Quote:
...
The software included with the MicroVault USB Latest News about USB stick, according to F-Secure, installs a driver that hides a directory under "c:\windows\." The files contained in the directory are not visible through the Windows application programming interface unless users already know the name of the directory.
However, an enterprising individual can find ways to run files from this directory. This poses a danger to computer users, as the files contained in the directory cannot be detected by some antivirus programs, depending on the techniques employed by the antivirus software. That is good news for the criminals and bad news for MicroVault owners.
"It is therefore technically possible for malware to use the hidden directory as a hiding place," F-Secure reported.
This time around, researchers said they believe the directory has been cloaked to maintain a secure authentication and avoid detection from those who would try to meddle with or circumnavigate the software's thumb print protections.
"It is our belief that the MicroVault software hides this folder to somehow protect the fingerprint authentication from tampering and bypass," F-Secure said. "However, we feel that rootkit-like cloaking techniques are not the right way to go here."
F-Secure contacted Sony regarding the company's concerns, it said, but decided to go public after the electronics maker failed to respond.
Sony is "still receiving information in this and should have more details shortly," Sony spokesperson Tom Di Nome told TechNewsWorld.
...
Sony Investigates Reports Of Fingerprint Reader Software Installing Rootkit On PCs
Quote:
...
On Wednesday, F-Secure said that the Micro Vault application was not as serious as the previous CD software, but still presented a security risk since hackers could hide malware in the hidden folder. The folder is used to protect fingerprint authentication from tampering.
In general, the software is less onerous because it does not hide its folder deeply in the system, and probably wouldn't hide malware as effectively from anti-virus scanners, F-Secure said. In addition, the Micro Vault software does not hide processes or registry keys, and can be removed through a standard installation process.
But while Sony said it no longer offers the software with its fingerprint reader, F-Secure said the rootkit-carrying application was still available for download from Sony.net.
...