I do not need a solution (just sharing information)
Does anyone know if SEP is affected by AVGator. I opened up a case and Symantec said that there is no patch so far because there were no reports of any successful exploit on SEP / SEPM.
I can only take that to mean Symantec isn't taking any action until it is shown to be broken. Is there any additional information anyone might know about this on Symantec products?
https://bogner.sh/2017/11/avgater-getting-local-admin-by-abusing-the-anti-virus-quarantine/
0