Researchers at Blue Frost Security firm discovered a flaw in the FireEye Virtual Execution Engine (VXE) that allows an attacker to completely bypass virtualization-based dynamic analysis and whitelist malware. FireEye requested Blue Frost to wait until mid-February to disclose the flaw because many customers had not applied the updates. Experts reported the flaw to FireEye in September 2015, the company promptly patched the issue and released and an update of the Fire Eye Operating System (FEOS) FireEye has not seen any active exploits against its customers.”]
Source: http://securityaffairs.co/wordpress/44576/hacking/bypass-fireeye-detection-engine.html

