I downloaded trial edition of Bit defender Anti virus plus (2017) and have noticed that it installed a root certificate called Bit defender on my Windows PC. I also noticed that when I goto various websites which use HTTPS, the certificates show as being verified by Bit defender. For example visit www.amazon.co.uk, click green padlock in firefox, shows verified by bitdefender. However, if I go into the Bit Defender settings, there's an option called "SSL scan" under web protection. I disabled it. Then went back to www.amazon.co.uk and SSL/TLS certificate now shows as being verified by the correct CA which is Symantec.
Please could you explain the benefits of Bit Defender scanning certificates? and also is it still encrypted end to end when using "SSL scan" option enabled ?
I have read a few technical articles about companies installing their certificate in order to setup proxies, route traffic through their servers and as a result implement a MITM attack where they can actually eavesdrop on conversations. I am rather concerned by this given the recent outing of Anti virus company Lavasoft.
thanks