[ Product News ] 31 October, 2011 19:27

    Recently we upload new version v1.0.2 of AegisLab Antivirus Free in Google Market. Besides originally supporting simplified Chinese, tranditional Chinese and English, now it can also support French, Japanese, German, Spanish, Korean and Portuguese.

    So welcome to download new version and have feedback to us.

    Download in Google Market: https://market.android.com/details?id=com.aegislab.sd3prj.antivirus.free&feature=search_result

 

By AegisLab 

[ Security Alert ] 24 October, 2011 14:42

    According to security blogger David Lynch (http://http://davidlynch.org/), he has found a severe XSS vulnerability in Eyewonder Ad Network, including CNN, NY Times and Fox News involved in this vulnerability.

(Figure 1: CNN) 

 

 

(Figure 2: NYTimes) 

 

(Figure 3: Fox News)  

 

 

(Figure 4: Hi, Lionic!)  

Test links are as following:

http://edition.cnn.com/eyewonder/interim.html?src=http://davidlynch.org/projects/xss/eyewonder.js

http://www.nytimes.com/eyewonder/interim.html?src=http://davidlynch.org/projects/xss/eyewonder.js

http://www.foxnews.com/eyewonder/interim.html?src=http://davidlynch.org/projects/xss/eyewonder.js

 

All of these websites use Eyewonder Ad Network(http://www.eyewonder.com), the JS looks like this:

<script language="JavaScript">
    var query = window.location.search;
       var adUrl = query.substring(5, query.length);
       var clickthru;
       var failclickthru;
    document.write('<s'+'cript language="JavaScript" src="');
    document.write(adUrl+'"></s'+'cript>');

</script> 

Any severe attacks can make it by filling query string with malicious JS, like figure 4. injects "Hi, Lionic!" into CNN website.

Reference:

1. http://davidlynch.org/blog/2011/10/xss-is-fun/

  

By AegisLab 

 

 

[ Product News ] 03 October, 2011 12:39

      We are proudly to make the announce that our AegisLab Antivirus Free on Google Market has new version now. In this version, SD card scan was included and much more like:

  • Add schedule scan feature
  • More fancy UI
  • Registration for AegisLab member
  • Performance enhancement
  • Bugs fixed
  •       And currently the scan engine can cover over 1500 malware instances. To protect your smartphone, download and install AegisLab Antivirus Free now.

        You can also check Softpedia recommendation here.