A recently discovered drive-by attack technique called drive-by cache evades signature-based antivirus and loads...
By submitting your email address, you agree to receive emails regarding relevant topic offers from TechTarget and its partners. You can withdraw your consent at any time. Contact TechTarget at 275 Grove Street, Newton, MA.
malware directly into the browser cache. How can I protect my enterprise systems from this threat?
You could potentially protect your enterprise from this very specific attack by disabling the browser cache, but this could have a negative performance impact on Web servers or users' browsing experience. However, this might be a reasonable trade-off until malware definitions for this attack are released or other protections are available and enabled in your Web browsers. Since this attack requires writing something to disk, it could be detected by client-side antimalware software. But, since the malware isn’t being detected, like much of the other malware out there, other protections need to be in place, which has been covered in previous questions.
Dig Deeper on Web Application and Web 2.0 Threats
Related Q&A from Nick Lewis
The new Trochilus RAT can avoid detection in cyberespionage attacks. Expert Nick Lewis explains how it works, and if enterprises need to adapt their ...continue reading
The Asacub Trojan has new banking malware features. Expert Nick Lewis explains how it made this transition and what enterprises should be watching ...continue reading
BlackEnergy malware may have been part of the attacks on Ukrainian utility and media companies. Expert Nick Lewis explains how this malware works and...continue reading
Have a question for an expert?
Please add a title for your question
Get answers from a TechTarget expert on whatever's puzzling you.