Security Audit

Our Web Application Pentest ( WAP) attempts to address the Owasp top 10 & SANS top 20 web application vulnerabilities and other exploitable loopholes of your web application . Along with it our WAP team also test web applications for Business logic flaws that can directly or indirectly effect the functioning of application.

Trainings

We are here to help you solve your biggest query- where and how to start? CDI has brought various courses in Ethical Hacking in Chandigarh where all you technology lovers will be given the much needed push to move forward and create a niche for yourself in the field. From Beginner to Expert level we have many kinds of training patterns.

VirusTotal will now Analyse malicious Firmware too!

Google has added a new tool in “VirusTotal”, which is capable to analyse suspicious firmware. Firmware is a code of low level, which act as a bridge between operating system and hardware during boot process of computer system. Most advanced hackers are using firmware as a place to spread malware, because they know it is the most secure place to hide. Even NSA (National Security Agency) of United States is using this technique.

One of the security engineer from VirusTotal said,” It is not possible for AV tools to scan this part, because all these processes will start automatically when you will turn on your computer system. If there is a malware which is hidden inside the firmware then it will not be easy for anyone to remove it. This type of malwares can survive several rebooting processes of an Operating System.

Now VirusTotal is using a new tool using which security researchers and malware analysts can upload a malware designed by them. This malware will indicate them if any suspicious activity will occour during the startup process. It will also indicate the security team about the technical information releasing process during startup. This tool will label the images of firmware. It could be suspicious or legitimate. This tool will scan all the .exe files which are available in it. All the certificates attached with the firmware will be scanned by this new tool.

Hackers can also use PEs (Portable Executables) as a malware inside any firmware, therefore this tool is also capable to scan these Portable Executables. VirusTotal will got a complete report of this scan individually and users can see this report when VirusTotal will publish it. From that report users can see what could be happened with their BIOS.

By using this users will be capable to extract their firmware. They can submit the report to VirusTotal. After that VirusTotal will create a database of all these reports, which will help the researchers to scan bad firmware.

Source:cio.com

See more of Cyber Intelligence by logging in.
Connect with cyber security experts,Discover job opportunities,Online Training, Information Security Advisory and lot more.