Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Avast

Avast Vendor Cyber Rating & Cyber Score

avast.com

Avast is a leader in Cyber Safety and part of Gen™ (NASDAQ: GEN), a global company dedicated to powering Digital Freedom with a family of trusted consumer brands.


Avast A.I CyberSecurity Scoring

Avast
Company Information
Website:https://www.avast.com
Employees number:828
Number of followers:0
NAICS:541514
Industry Type:Computer and Network Security
Homepage:avast.com
Avast Risk Score (AI oriented)
Between 800 and 849
logo
AvastComputer and Network Security
Updated:
02/04/2026
801/1000
Good
A
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Avast Global Score (TPRM)
xxxx
logo
AvastComputer and Network Security
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Avast
AvastGood
Current Score
801A (GOOD)
01000
4 incidents
-9 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
803Before Incident
MAY 2026
802Before Incident
APRIL 2026
801Before Incident
MARCH 2026
800Before Incident
FEBRUARY 2026
809Before Incident
Cyber Attack
25 Feb 2026Avast
Avast: Cybercriminals Exploit Fake Avast Website to Steal Users Credit Card Information

Fake Avast Phishing Site Steals Credit Card Data in Sophisticated Scam

800After Incident
HIGH-9
AVA1772015041
Fake Avast Phishing Site Steals Credit Card Data in Sophisticated Scam Cybercriminals have deployed a highly convincing phishing campaign targeting French-speaking users by impersonating Avast’s official website. The fraudulent page, nearly indistinguishable from the legitimate site, displays a fake €499.99 charge for an Avast product, complete with dynamic timestamps that update to match the visitor’s system time. The scam employs psychological pressure, claiming users have only 72 hours to cancel while simultaneously stating transactions older than 48 hours cannot be reversed. The site’s "refund form" harvests sensitive data, including full names, addresses, and credit card details (number, expiry, and CVV). To appear authentic, it validates card numbers using the Luhn algorithm before transmitting stolen information to the attackers’ server via a send.php script. After submission, victims see a deceptive confirmation message and a prompt to "uninstall Avast," further eroding security defenses. Adding to the deception, the site includes a live chat widget (Tawk.to ID: 689773de2f0f7c192611b3bf), allowing operators to interact with victims in real time, guiding them through the fraudulent process. The scheme targets multiple victim profiles legitimate Avast customers, confused users, and opportunists without requiring account verification or license keys. The campaign was identified by Malwarebytes, highlighting the risks of phishing tactics that exploit trusted brands and urgent financial alerts. No actual charges occur; the goal is solely to extract payment details under the guise of a refund.
INCIDENT DETAILS -
TYPE
Phishing
MOTIVATION
Financial gain
IMPACT
Data Compromised: Credit card details (number, expiry, CVV), full names, addressesBrand Reputation Impact: Erosion of trust in Avast brandIdentity Theft Risk: HighPayment Information Risk: High
DATA BREACH
Type Of Data Compromised: Payment information, personally identifiable informationSensitivity Of Data: HighData Exfiltration: Yes (via *send.php* script)Personally Identifiable Information: Full names, addresses, credit card details
JANUARY 2026
809Before Incident
DECEMBER 2025
703Before Incident
NOVEMBER 2025
808Before Incident
OCTOBER 2025
807Before Incident
SEPTEMBER 2025
807Before Incident
AUGUST 2025
806Before Incident
JULY 2025
805Before Incident
NOVEMBER 2024
802Before Incident
Vulnerability
01 Nov 2024Avast
Avast

Malware Campaign Exploiting Avast Anti-Rootkit Driver

800After Incident
CRITICAL-2
AVA000112624
A malware campaign has been discovered targeting systems using a vulnerable Avast Anti-Rootkit driver. This driver allowed malware to disable security tools and assume control over the system. The compromise affected various security products from multiple companies, with the malware utilizing kernel-level access to terminate security processes. Organizations were advised to instate protections against BYOVD (Bring Your Own Vulnerable Driver) tactics, which use legitimate but compromised drivers to evade detection. Indicators of compromise have been provided to assist in thwarting such attacks, highlighting the importance of protecting systems against kernel-level threats posed by flawed security drivers.
INCIDENT DETAILS -
TYPE
Malware Campaign
IMPACT
Various security products from multiple companies
APRIL 2022
825Before Incident
Ransomware
01 Apr 2022Avast
Avast

DoNex Ransomware Incident

775After Incident
CRITICAL-50
AVA915071024
Avast successfully developed a decryptor for the DoNex ransomware family, identifying a flaw that allowed victims to recover their files without charge. Previously known as Muse and DarkRace, DoNex, which emerged in April 2022, targeted individuals and organizations, causing disruptions mainly in the US, Italy, and Belgium. By encrypting files with a ChaCha20 symmetric key and further securing the symmetric file key with RSA-4096 encryption, the ransomware demanded a ransom for file decryption. Avast’s decryptor has been distributed in secrecy since March 2024, in collaboration with law enforcement, to avoid alerting the ransomware authors. The company also provided the public with Indicators of Compromise to help identify and mitigate this security threat.
INCIDENT DETAILS -
TYPE
Ransomware
MOTIVATION
Financial gain
DATA BREACH
Data Encryption: ChaCha20 symmetric key and RSA-4096 encryption
MAY 2014
831Before Incident
Data Leak
01 May 2014Avast
Avast

Avast Anti-Virus Forum Hack

798After Incident
HIGH-33
AVA221624123
In May 2014, the Avast anti-virus forum was hacked and 423k member records were exposed online. The Simple Machines Based forum included usernames, email addresses and password hashes of about 422,959 individuals.
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
usernamesemail addressespassword hashesForum
DATA BREACH
usernamesemail addressespassword hashes

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Avast ?
?
What was Avast's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Avast's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Avast's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Avast's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Avast's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Avast's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Avast's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Avast's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Avast's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Avast's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Avast's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Avast's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Avast ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Avast's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?