You Don't Need to Buy Antivirus Software – The New York Times

We independently review everything we recommend. When you buy through our links, we may earn a commission. Learn more
Advice, staff picks, mythbusting, and more. Let us help you.

We’ve updated our original post to better reflect the advice we heard from experts, none of whom endorsed specific software. Most people can use Windows Defender alone to keep their computers secure.
Kevin Purdy
Thorin Klosowski
Share this post
We set out to do a standard Wirecutter guide to the best antivirus app, so we spent months researching software, reading reports from independent testing labs and institutions, and consulting experts on safe computing. And after all that, we learned that most people should neither pay for a traditional antivirus suite, such as McAfee, Norton, or Kaspersky, nor use free programs like Avira, Avast, or AVG. The “best antivirus” for most people to buy, it turns out, is nothing. Windows Defender, Microsoft’s built-in tool, is good enough for most people.
We spent dozens of hours reading results from independent labs like AV-Test and AV-Comparatives, feature articles from many publications such as Ars Technica and PCMag, and white papers and releases from institutions and groups like Usenix and Google’s Project Zero. We also read up on the viruses, ransomware, spyware, and other malware of recent years to learn what threats try to get onto most people’s computers today.

Over the years, we’ve also spoken with security experts, IT professionals, and the information security team of The New York Times (Wirecutter’s parent company) to filter out the noise of the typical antivirus table-tennis headlines: Antivirus is increasingly useless, no, actually it’s still pretty handy, no, antivirus is unnecessary, wait, no, it isn’t, and so on.
Although in any category we usually test all the products we’re considering, we can’t test the performance of antivirus suites any better than the experts at independent test labs already do, so we relied on their expertise.
But ultimately, relying on any one app to protect your system, data, and privacy is a bad bet, especially when almost every antivirus app has proven vulnerable on occasion. No antivirus tool, paid or free, can catch every malicious bit of software that arrives on your computer. You also need secure passwords, two-factor logins, data encryption, systemwide backups, automatic software updates, and smart privacy tools added to your browser. You need to be mindful of what you download and to download software only from official sources, such as the Microsoft App Store and Apple Mac App Store, whenever possible. You should avoid downloading and opening email attachments unless you know what they are. For guidance, check out our full guide to setting up all these security layers.
It's insufficient for a security app to just protect against a single set of known “viruses.” There is a potentially infinite number of malware variations that have been crypted—encoded to look like regular, trusted programs—and that deliver their system-breaking goods once opened. Although antivirus firms constantly update their detection systems to outwit crypting services, they’ll never be able to keep up with malware makers intent on getting through.
A quick terminology primer: The word malware just means “bad software” and encompasses anything that runs on your computer with unintended and usually harmful consequences. In contrast, antivirus is an out-of-date term that software makers still use because viruses, Trojan horses, and worms were huge, attention-getting threats in the 1990s and early 2000s. Technically, all viruses are a kind of malware, but not all pieces of malware are viruses.
So why shouldn’t you install a full antivirus suite from a known brand, just to be on the safe side? For many good reasons:
For these reasons, we don’t recommend that most people spend the time or the money to add traditional antivirus software to their personal computer.
Two caveats to our recommendation:
If you use Windows 10, you already have a robust antivirus and anti-malware app—Windows Defender—installed and enabled by default. The AV-Test Institute’s independent testing gave Windows Defender a recommendation in December 2019, and a nearly perfect rating in performance.
Because Windows Defender is a default app for Windows 10, by the same company that makes the operating system, it doesn’t have to upsell you or nag you about subscriptions, and it doesn’t need the same kind of certificate trickery to provide deeply rooted protection for your system. It doesn’t install browser extensions or plug-ins for other apps without asking. Windows Defender does have the problem of being the default detection app that malware makers first attempt to work around. But having layers of security and good habits—especially sticking to official app stores and not downloading questionable free versions of things you should pay for, as we cover in another blog post—should keep you safe from the worst kind of Defender-defeating malware.
AV-Test dinged Windows Defender in protection back in September 2019 due to its failure to catch some zero-day malware attacks. Windows Defender rebounded in AV-Test’s December tests, fixing those real-world testing issues and catching 100 percent of the attacks. In any case, Windows Defender routinely performs as well in lab tests as any paid third-party antivirus software, and when a major vulnerability was discovered in Windows Defender in May 2017, Microsoft was remarkably fast with the fix—from a Friday-night disclosure to a Monday-evening patch.
No antivirus software consistently receives perfect scores from every test lab, every month, in every test, but Windows Defender typically does as well as (or better than) the competition, it’s free, and it’s enabled by default.
Due to a combination of demographics, historical precedent, and tighter controls, Macs have historically been less vulnerable to infection than Windows computers:
This is not to say Macs lack any vulnerabilities. Mac owners who install a bad browser extension are just as vulnerable as Windows or Linux users. The Flashback malware exploited a Java vulnerability and tricked more than 500,000 Mac users in 2012, affecting about 2 percent of all Macs. We’ve also seen some reports that Mac malware is growing, but the built-in security protections of macOS mean it’s typically more of a nuisance, like annoying adware, than a real problem.
You should still practice safe computing on a Mac and install applications only from the official Mac App Store. Browser extensions can also be problematic, so install only thoroughly vetted extensions that you really need.
If you spend a lot of time in sketchier corners of the Internet, or if you think you may have already downloaded malicious software that Windows Defender didn’t catch, we’ve found that Malwarebytes is mostly unintrusive and can identify malware that Windows Defender may have missed, or malware that has made its way onto a Mac. But the paid version is not necessary for most people.
Malwarebytes can detect certain kinds of zero-day exploits that Windows Defender may miss, which means the two programs running in tandem can work well together (provided that you set it up correctly). The premium version adds live scanning of downloads, which is useful if you download a lot of software or email attachments, but at $40 per year it’s an expensive proposition for protection against something most people don’t do often. For most everyone else, you can run the free version of Malwarebytes and use it to manually scan your system when you think you’ve possibly downloaded malware.
The idea that any one app could be universally aware of and protect against all threats is ludicrous. As security journalist Brian Krebs writes, antivirus “is probably the most overstated tool in any security toolbox.” Antivirus can certainly catch unwanted programs and protect your system, but it’s not enough on its own. We’ve written a guide to the best layers of security and good habits for anyone who uses a computer.
by Thorin Klosowski
Confirm that the built-in protections of Windows and MacOS are active, and you probably won’t need to pay for antivirus software.
by Haley Perry
From password managers to backup software, here are the apps and services everyone needs to protect themselves from security breaches and data loss.
by Thorin Klosowski
Follow these simple steps to lock down your devices and accounts and take back some control over who has access to your data.
by Kimber Streams
If you’re on a budget, these are the best cheap Windows laptops and Chromebooks we recommend after extensive research and hands-on testing.
Wirecutter is the product recommendation service from The New York Times. Our journalists combine independent research with (occasionally) over-the-top testing so you can make quick and confident buying decisions. Whether it’s finding great products or discovering helpful advice, we’ll help you get it right (the first time).

source

Related Posts

After 6 months and little explanation, Norton Healthcare patients, employees still feeling effects of cyber attack – WDRB

Spotty shower possible. Storms after midnight Updated: April 16, 2024 @ 12:31 pmNorton Healthcare, a company serving about 600,000 patients a year with nearly $5 billion in assets, continues to…

Read more

CA's top cybersecurity job has been vacant for almost 2 years – CalMatters

Technology Californians get hacked all the time. The state’s top cybersecurity job is vacant In summaryGov. Newsom has yet to appoint a commander who is tasked with informing businesses and…

Read more

13 Cyber Security Measures Your Small Business Must Take – Tech.co

Our content is funded in part by commercial partnerships, at no extra cost to you and without impact to our editorial impartiality. Click to Learn MoreCybersecurity has been important to…

Read more

AVG Antivirus Free review – Ghacks

AVG AntiVirus Free is a longstanding security program for Microsoft Windows that protects computer systems from viruses, trojans and other malicious code.One interesting fact about AVG is that it maintains…

Read more

Vlog Episode #247: Chris Long on Improving Technical SEO Skills & Playing Offense SEO – Search Engine Roundtable

In part one, we learned about Chris Long and his experience working with Bill Slawski. Then, in part two, we spoke about helping people with SEO on LinkedIn and using…

Read more

Information Security Vs. Cybersecurity: What's The Difference? – Forbes

Information Security Vs. Cybersecurity: What’s The Difference?  Forbessource

Read more

Leave a Reply

Your email address will not be published. Required fields are marked *