Posts

Showing posts from December, 2019

Defeating Antivirus detection of malicious links using Googleweblight.

Image
Googleweblight is a service from Google that helps to load webpages in mobile phones using slow internet connections. It seems this service can make content filters ineffective and even help malicious websites bypass antivirus detection if the malicious website is not in google safe browsing blacklist. I was actually looking for ways to access websites which blocked anonymous Tor users , I found that in most of the cheap 3G cell phones , browsers used Googleweblight service to improve Web browsing and it was highly effective in unblocking websites which blocked Tor . It made me wonder if it could be used by evil guys to bypass Antivirus firewalls too. I created a dedicated Windows 10 Virtual Machine with Bitdefender Total Security with  latest updates and took a random verified phishing URL from phishtank service and opened it firefox , Bitdefender immediately blocked access  to the dangerous phishing website ;)  However No warning was displayed by bitdefender when same website

MY PGP KEY

Here i am posting my OPENPGP PUBLIC KEY which can be used to verify digital signature of  my software available in github and for reporting security bugs.  -----BEGIN PGP PUBLIC KEY BLOCK----- mQINBF3nwF4BEADbF61zKMFr/FNE/8mMniRPK66eIQvxzNWX0RhbjvLfjLooJiyx zCxGYURvXsxoDaehnGRnjP5Hf/Qok1SppAhIZydg5L1nkzjQHQQbUSIoilMGw1UH tWr8TCgZKPWUjPYtkoo0/lLxtgdVMVcl8pvdyYKCJVTpXuxWZa37z1FhCWTrLO1P Nv7B0xLuAjjem6lzLBO/5kUlL0mlsWHp1dMg8Zxm5lvuUNP/2xUe3Qyv49F1b1nt 5okzW1XmvNReEZKiMvHbxIzCRjbifaNXgZaar054FEWH3z3VN4BDsGHAqahVu4oz TAVcX5ABkCfwLOsAMAJrFyd3P6mVoY/fHnbyIIj2ZzZVUzSPSPPfkuukEd+OQKTK bm4Ite4yPXzGwN8XYNWELLn2vpb/ucqlcsvP5bXkt+YCixi0GkiELsI2B6VFgy/3 x4dr1eQKSM1S8ZBq/ah5/FCB5ikxfpCYqKA/tNqI3OafvJoYmzjaO1Wef6vMt+dF Hcs5/j/ZC/FyVgN58oPH6i7j/ihFDTvoCTLkr3NqbkWJkyW/Nuaek/Ed+N2FhPen YI8SVkjR/WXF4T0b4QCfgtyeOxQEqxInvJR3F9hRX48dMZWjl9Z54eWID9tOz4Y7 G7LusA1rNjmNWNIXCc6FHhANwhpW0uk6oKuW1uAdqNpyiWuj0devCIDKvwARAQAB tB9NLkFuaXNoIDxhbmVlc2gyNTg2MUBnbWFpbC5jb20+iQJOBBMBCAA4AhsjBQsJ CAcCBhUKCQgLAgQWAgMBA