Hot Take Avast/AVG/Norton seem to conflict with uBO malware list

I’m not sure if these are just coincidental findings or not, but recently I’ve submitted several fresh malicious links from URLhaus to AVG/Avast, and they were not detected by either the signature engine or the behavior blocker within the product. For a major cybersecurity company like AVG/Avast, owned by Gen Digital, I would expect much better detection of newly reported malware from sources like URLhaus. This issue is becoming increasingly noticeable to me. Has Avast/Gen Digital started going downhill in terms of protection quality? Around six months ago, their detection and response seemed much more effective, but lately it feels like they’ve taken a significant hit in performance and reliability. It seems Gendigital has taken a downturn in terms of false positives and malware detection, with a noticeable decline over the past six months.
 
I’m not sure if these are just coincidental findings or not, but recently I’ve submitted several fresh malicious links from URLhaus to AVG/Avast, and they were not detected by either the signature engine or the behavior blocker within the product. For a major cybersecurity company like AVG/Avast, owned by Gen Digital, I would expect much better detection of newly reported malware from sources like URLhaus. This issue is becoming increasingly noticeable to me. Has Avast/Gen Digital started going downhill in terms of protection quality? Around six months ago, their detection and response seemed much more effective, but lately it feels like they’ve taken a significant hit in performance and reliability. It seems Gendigital has taken a downturn in terms of false positives and malware detection, with a noticeable decline over the past six months.
Used to joint uBO/uBOL with Avast/AVG web shield without any issues; do not know if it is just a temporary bug.
 
Is this a systematic campaign to damage Ublock Origin's reputation? Yesterday I also read that Ublock Origin is the reason for Firefox's slowness. If that's the case, why doesn't Mozilla switch to MV3 like Chromium browsers, where Ublock Origin Light doesn't cause any slowdown?
Malware filter list is available in both uBO and uBOL!
 
in uBol it is near to useless (because upate frequence is to slow), I think uBol is updated once a week, making the two malware protection lists (enabled by default) a laugh.
The same malware list can be added to Brave adblocker; however, no complains regarding issues with Brave adblocker.
Looks like a targeted attack against uBO as you have stated.
 
The same malware list can be added to Brave adblocker; however, no complains regarding issues with Brave adblocker.
Looks like a targeted attack against uBO as you have stated.
I did not mention Brave because I don´t know whether Brave only updates the filter lists when the browser is updated or does this more often. When you add filter lists manually in Brave, it is possible to update the those filter lists on demand. So when Brave only updates filter lists with build-browser update those malware lists are as useless as with uBo, but when they are updated frequently they may add an extra layer when your AV (extenstion) and DNS malware filters don´t block them already.

For the record I was posting about uBol, not uBo, For uBo's malware block lists effectiveness, the update frequency of the list in the extensions is not the only bottle neck, you should also look how often the Github assets repo of uBo updates these malware blocklists. I just looked, but yesterday does not look promising. When Brave uses the uBol sources the same applies to effectiveness of Brave's malware filters (highly questionable).
1780041131061.png
 
Last edited:

You may also like...