Zero day vulnerability is security flaw, or error that exist within an application or network system waiting to be identified and exploited by threat actors to compromise a secure environment. Zero day vulnerabilities represent those weakness that have not been noticed or reported for the first time.
A zero-day virus – also called zero-day malware is a previously unidentified computer virus or malware that is yet to get specific antivirus software signature. Normally, antivirus software rely on already available signatures to identify malware.
Any attack that exploits vulnerable system associated with the above scenarios is referred to as zero-day attack. These are common in new software (code errors), firmware and hardware mis-configurations. Unpatched applications also augment systems attack-surface and facilitate zero day attack.
Some high profile Zero day attacks include:
Stuxnet (malicious computer worm): Uncovered in 2010, The vulnerability that existed in software that runs Industrial computers and it targets supervisory control and data acquisition ( SCADA) systems. It cause the equipment run by SCADA systems to malfunction by feeding them with mutilated / false data.
Secondly, the Sony zero day attack: This was launched in 2014 and it really affected Sony pictures entertainment exposing some of their sensitive information
Thirdly, is RSA attack: In 2011 malicious actor exploited vulnerability that existed in an unpatched Adobe Flash Player to gain access in the Network of RSA Company.
In as much as big companies are most targeted, one should also be conscious of protecting itself from unwanted attacks by employing some basic cyber hygiene. (Regular system updates, Avoid unknow links, Connect to internet only when needed etc.
Best Practices for Zero-Day Attack Prevention
Thanks