Internet

Hackers can steal your data if you are using CCleaner software

Researchers have found out that hackers broke into the British Company Piriform’s free software CCleaner which is used for optimizing computer performance last month, potentially allowing hackers to control more than 2 million users, the company and researchers unveiled today—Reuters reported.

CCleaner is legitimate software which is downloaded and used by millions of users around the world, the software is downloaded five million times a week. It cleans the hard drive and memory to speed up the systems.

Hackers injected malicious program into the CCleaner to get access to the system files, Piriform’s main product CCleaner was bought in July by Avast, one of the leading security vendors, Avast said they had 130 million users at the time of the deal.

Cisco’s Telos researchers said a version of CCleaner software downloaded in August had remote administration tools which tried to connect to several unregistered web pages, assuming that to download additional illegitimate programs.

Car Keys will be replaced with mobile apps

Craig Williams Talos researcher said it was an innovative attack because it managed to penetrate into the trusted supplier similar to the June’s attack “NotPetya” on the companies which downloaded infected accounting software.

Piriform has confirmed in a blog post that two versions of the software released in August are compromised. The company has advised users of CCleaner v5.33.6162 and CCleaner Cloud v1.07.3191 to download new updated versions.

According to the spokesperson Piriform, 2.27 million people downloaded the August version of CCleaner and only 5000 users have actually installed the compromised version of CCleaner Cloud.

Piriform said Avast, its new parent company has unveiled attacks on September 12, the new compromised version of the software was released the same day and a clean version of CCleaner Cloud was released on September 15.

Williams said CCleaner doesn’t automatically update, so everyone who has downloaded the compromised version has to delete the one and install a fresh version in order to be safe from any threats in the future.

Talos detected the attack at an early stage when the hackers were collecting information from the compromised machines rather than forcing the machines to install new programs, said Williams.

The company also contacted US law enforcement to shut down the server where the traffic was set to be directed, the server was closed down on September 15 before any big reported damage.

If you use CCleaner in your system, you immediately need to uninstall it from your system and install the latest version of the software to remain protected from the attack.

Recent Posts

End of the PlayStation disc: Angry fans are now planning a mass boycott

The announced disc shutdown on PlayStation is currently heating up fans' minds. While Sony plays…

2 hours ago

GTA 6 codes are region-specific and even have an expiration date in Japan

In the future or initially, physical GTA 6 cases will only contain a download code…

2 hours ago

Samsung Galaxy: There will be two new premium smartphones in 2027

Samsung customers will be able to enjoy a wider selection of premium smartphones next year…

2 hours ago

Blade Runner 2099: Amazon shows the teaser trailer for the miniseries

Amazon has released the first teaser trailer for Blade Runner 2099, which already gives a…

2 hours ago

Marvel: Ryan Gosling introduced as Ghost Rider, new Black Panther

Marvel relies on well-known brands in the film universe, but deliberately swaps out the faces…

2 hours ago

Google Pixel user in court over the functionality of his custom ROM

A US citizen is on trial because he used a special security feature of his…

2 hours ago