Alex Humphrey is a user on infosec.exchange. You can follow them or interact with them if you have an account anywhere in the fediverse. If you don't, you can sign up here.

Wow, FileZilla’s bundled installer includes a malware downloader and the dev defends it horribly.

If using FileZilla, uninstall and find something else. Even if this issue is fixed, the morally ambiguous and defensive response is very concerning.

forum.filezilla-project.org/vi

@entreprelife suspicious behaviour from processes spawned from bundled adware.

If you install FileZilla clean, without selecting adware (e. g. via choco) you're still safe.

Alex Humphrey @entreprelife

@saxnot What's really disconcerting is the dev's response to the whole thing.

· Web · 1 · 3