Skip to content
The Cyber Security Place

Software

VXE Flaw allowed threats to bypass FireEye detection engineSecurity Affairs

Reported by securityaffairs.co

Security researchers at Blue Frost Security have found a high severity vulnerability in FireEye products that allowed an attacker to bypass the company’s detection engine and temporarily whitelist malware.

The experts reported the flaw to FireEye in September 2015, the company promptly patched the issue and released and an update of the FireEye Operating System (FEOS). FireEye also requested Blue Frost to wait until mid-February to disclose the flaw because many customers had still not applied the updates.

Read the full article at securityaffairs.co