Is there any anti-virus or other anti-malware applications out there
that do trusted root validation?
In other words, enumerate the list of trusted root certificates loaded
in any browsers on a host and check them against a known valid list to
ensure all are legit? For computers that are members of an AD domain
with a PKI infrastructure, either accept the trusted root for the AD
domain or (in an enterprise suite), allow the administrator to add to
the list.
Thanks,
--
Matt Hickman
>> Stay informed about: trusted root validation