Avast prevents attack targeting CCleaner
Avast has detailed how it prevented a suspected supply chain attack on the popular CCleaner software product.
CCleaner had been targeted in such an attack in 2017 and led to Piriform unknowingly distributing malware with the installer for the better part of a month. Attackers had successfully breached the development environment and made malicious modifications before distribution.
Avast has confirmed that it has prevented a similar incident from occurring. It has detailed "Abiss" in a blog post; a suspected supply chain attack on the CCleaner product. The most important detail is that the attempt was unsuccessful and no users of the product were exposed to malware as a result.
The clues that something was amiss started with a false positive in the form of a MS ATA alert of a malicious replication of directory services from an internal IP belonged to Avast's VPN address range. Further analysis found the attacker was attempting to gain access to the network through the VPN as early as May 14, 2019.
The user, whose credentials were apparently compromised and associated with the IP, did not have domain admin privileges. However, the attacker managed to gain domain admin privileges through a successful privilege investigation.

While we're
Just a few days ago we told you about 


