Incidents

Kaspersky false positive on Exploit.HTML.Objdata

A change we made recently to our virus definition for ‘Exploit.HTML.Objdata’ may cause a false positive.

The problem was reported to us at 18:00 Moscow time [GMT+3] on 1 November and we posted a revised definition at 22:00 on the same day.

If any of your Kaspersky anti-virus products flagged this threat during these four hours, we recommend that you scan again with updated bases to make sure.

Kaspersky false positive on Exploit.HTML.Objdata

Your email address will not be published. Required fields are marked *

 

Reports

MoonBounce: the dark side of UEFI firmware

At the end of 2021, we inspected UEFI firmware that was tampered with to embed a malicious code we dub MoonBounce. In this report we describe how the MoonBounce implant works and how it is connected to APT41.

Subscribe to our weekly e-mails

The hottest research right in your inbox