Jump to content

Recommended Posts

Posted (edited)

 

I just uncovered something that completely undermines the entire purpose of Kaspersky’s Safe Browsing feature.

Kaspersky claims Safe Browsing runs in a virtualized, isolated environment to keep user data secure. In reality? It dumps everything in plain sight at:

 
 
C:\ProgramData\Kaspersky Lab\SafeBrowser\Common\

And here’s the worst part:

  • That folder is wide open. Any third-party program (file managers, cleaners, erasers, even malware with standard privileges) can access it.

  • There’s no encryption, no sandbox, no ACL protection. It’s just sitting there.

  • On SSDs, once this data is written, you can’t even guarantee complete destruction.

For someone like me, who always stores browsing profiles and user data inside VeraCrypt vaults with maximum security, this is beyond unacceptable. I used Safe Browsing for months, thinking it isolated data properly. Instead, all of it was on my C drive like nothing mattered.

So much for “virtualization.” What’s the point of a so-called isolated environment if the data ends up exposed on disk? It’s basically just a Chromium shell with poor storage policies dressed up as security.

SO If you think you’re safe using Kaspersky Safe Browsing — you’re not. It’s a false sense of security that actually makes you more vulnerable.

This is not a minor oversight. It’s a fundamental design flaw that destroys trust in the product. Until Kaspersky fixes this, assume your browsing data is not secure and take your own precautions.

Edited by noone
add more details
  • The title was changed to Kaspersky Safe Browsing: Fake “Virtualization” & Exposed Data
Posted
8 часов назад, noone сказал:

That folder is wide open. Any third-party program (file managers, cleaners, erasers, even malware with standard privileges) can access it.

Really?) There's double protection - for root SB folder and for each browsers folder. After all permissions are granted, other programs can get access. Otherwise, each program will request an increase in access rights.

Screenshots translation:

  • Explorer: "You don't currently have permission to access this folder. Click Continue to permanently get access to this folder."
  • Total Commander: "Access denied on file, run as Administrator."
Спойлер

Screenshot_11.thumb.png.c66a7faf917414f7661b318c8675c55e.pngScreenshot_12.thumb.png.e2303ed9ae7128887f8abaa289995fb1.pngScreenshot_13.thumb.png.5b583c3526c53123e4dfdc0bd62c604a.png

  • Like 1

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now


×
×
  • Create New...