- May 9, 2024
- 129
The only almost unbeatable thing is my technique at prevention. Containing everything for analysis. Comodo didn't contain everything but almost everything.
What is your solutionThe only almost unbeatable thing is my technique at prevention. Containing everything for analysis. Comodo didn't contain everything but almost everything.
yes. as explained in the video. now lets hope they dont take another 3~4 years to bring this fix into cis...Yes. There are two settings :
- Monitor DLL files being loaded by running processes (Enabled).
- Auto-block unknown DLL file(s) from being loaded by processes (Enabled).
View attachment 287714
When the benign EXE file (vulnerable to DLL hijacking) is executed, Xcitium monitors loaded DLL and blocks if it is Unknown.
Comodo (CIS) still does not monitor loaded DLLs, so it cannot block DLL hijacking attacks.
yes. as explained in the video. now lets hope they dont take another 3~4 years to bring this fix into cis...![]()
theyre new. according with a mod there its a new option added to prevent these kind of problem exposed on my videos. i dont know when exacly they added it but its new.@Sandbox Breaker - DFIR, If I'm right, you use Xcitium. Can you confirm if the settings below are old or new?
Monitor DLL files being loaded by running processes
Auto-block unknown DLL file(s) from being loaded by processes
I dropped Xcitium. Sorry. And with reason.@Sandbox Breaker - DFIR, If I'm right, you use Xcitium. Can you confirm if the settings below are old or new?
Monitor DLL files being loaded by running processes
Auto-block unknown DLL file(s) from being loaded by processes
It is not clear from the staff's reply if those settings are old or new. He states they are looking into the issue and then directs you to those settings, mentioning the settings are there for such situations but disabled by default to avoid false positive cases.theyre new. according with a mod there its a new option added to prevent these kind of problem exposed on my videos. i dont know when exacly they added it but its new.
My solution is not for daily usage but rather than malware analysis. Sandboxing everything then analyze it in containment.What is your solution
or the solutions you rely on for protection.
And thank you.
@vitao 's video clearly shows what he is stating is fact. There is no need for you to get upset. The girl has difficulties accepting reality for what it is sometimes. She can be very defensive about her one and only true love - Comodo. There's definitely a fixation or perhaps fetish with Comodo in her relationship with it.No, don't do that to her. She's a well respected member of the community and is the expert on Comodo. Because of that I'm inclined to believe what she says is true over you.
That's my view as well. I appreciate and watch @cruelsister's Comodo demonstrations. She is popular in the Comodo space, but I don't see her as an expert. I have seen no posts where she really shows in-depth knowledge of Comodo.@vitao 's video clearly shows what he is stating is fact. There is no need for you to get upset. The girl has difficulties accepting reality for what it is sometimes. She can be very defensive about her one and only true love - Comodo.
Precisely, @vitao, similarly, is in the endless loop of complaints. Product testing, highlighting issues to the vendor, concludes the process for a tester.It is difficult to understand how people think that continuous complaining is ever going to motivate Melih to make Comodo a refined product. He has stated for decades that he will not do that because he thinks it is good enough
What is happening is predictable since it is social media. There is enough machinations and game playing by both sides. That has been the case since Day 1 of CIS.That's my view as well. I appreciate and watch @cruelsister's Comodo demonstrations. She is popular in the Comodo space, but I don't see her as an expert. I have seen no posts where she really shows in-depth knowledge of Comodo.
Precisely, @vitao, similarly, is in the endless loop of complaints. Product testing, highlighting issues to the vendor, concludes the process for a tester.
well, is this a good or a bad thing? sorry. language barrier hereThat's my view as well. I appreciate and watch @cruelsister's Comodo demonstrations. She is popular in the Comodo space, but I don't see her as an expert. I have seen no posts where she really shows in-depth knowledge of Comodo.
Precisely, @vitao, similarly, is in the endless loop of complaints. Product testing, highlighting issues to the vendor, concludes the process for a tester.