Home » Security News » Security Bug in Comodo Internet Security 2025 Lets...

Security Bug in Comodo Internet Security 2025 Lets Hackers Run Code with Full Access

Security Bug in Comodo Internet Security 2025 Lets Hackers Run Code with Full Access
Deepika July 7, 2025 Security

Add Techlomedia as a preferred source on Google. Preferred Source

Security researchers have found multiple serious flaws in Comodo Internet Security Premium 2025. These issues allow hackers to remotely execute code on your system with SYSTEM-level privileges. In simple words, they can take full control of your computer.

The affected version is 12.3.4.8162, and the bugs are tracked as CVE-2025-7095. The flaws were discovered by researchers at FPT IS Security.

The problem is with how Comodo handles software updates. The app connects to https://download.comodo.com to download updates. However, it does not properly check SSL certificates. Because of this, attackers can redirect the update request to a fake server using DNS spoofing.

So even if it looks like you are downloading an official update, the files might be coming from a hacker’s server.

The researchers showed how attackers on the same network can use tools like Scapy and ARP spoofing to hijack DNS requests. Once the update is redirected, they can send a malicious file that runs on your system with full privileges.

Read: Best Antivirus Software

They also showed how PowerShell scripts can be used to run tools like Mimikatz. This allows the hacker to steal passwords, even those saved for the Administrator account.

Comodo does not check if the update files are real or fake. Hackers can create a fake XML file with a command tag. That tag can execute any command it wants with SYSTEM access.

There is also a path traversal flaw. Attackers can place malware inside the Windows startup folder using a simple folder trick. This makes sure the malware runs every time the system boots.

Even if the attack starts with basic user access, hackers can still gain full SYSTEM access using known methods like UAC bypass.

The flaws have a CVSS 4.0 score of 6.3, which is marked as medium severity. But the real danger is much higher. A successful attack gives the hacker complete control of the system. They can steal data, install spyware, or cause damage.

The researchers said they have not received any response from Comodo. There is no patch or update available to fix these issues at the moment.

If you use Comodo Internet Security 2025, you should avoid using public Wi-Fi or shared networks where attackers can hijack traffic. Enable the firewall to block suspicious update traffic. You should also disable automatic updates if possible, until a fix is released.

Follow Techlomedia on Google News to stay updated. Follow on Google News

Affiliate Disclosure:

This article may contain affiliate links. We may earn a commission on purchases made through these links at no extra cost to you.

Deepika

About the Author: Deepika

Deepika Singh is a Senior Tech Analyst at Techlomedia, specializing in mobile ecosystems and application performance. She holds an M.Tech from IIT Dhanbad, where she developed a deep technical understanding of hardware-software integration. Combining her academic background with a passion for Mobile UX and Graphic Design, Deepika provides expert-level comparisons of gadgets and apps. Her reviews go beyond the surface and focuses on real-world use cases. Her 12 years of experience help her draft valuable content for readers.

Related Posts

Stay Updated with Techlomedia

Join our newsletter to receive the latest tech news, reviews, and guides directly in your inbox.