VB Blog

Alleged author of creepy FruitFly macOS malware arrested

Posted by   Martijn Grooten on   Jan 11, 2018

A 28-year old man from Ohio has been arrested on suspicion of having created the mysterious FruitFly malware that targeted macOS and used it to spy on its victims.

Read more  

The threat and security product landscape in 2017

Posted by   Martijn Grooten on   Jan 10, 2018

At the start of the new year, Virus Bulletin looks back at the threats seen in the 2017 and at the security products that are available to help mitigate them.

Read more  

Spamhaus report shows many botnet controllers look a lot like legitimate servers

Posted by   Martijn Grooten on   Jan 9, 2018

Spamhaus's annual report on botnet activity shows that botherders tend to use popular, legitimate hosting providers, domain registrars and top-level domains when setting up command-and-control servers.

Read more  

Tips on researching tech support scams

Posted by   Martijn Grooten on   Jan 5, 2018

As tech support scammers continue to target the computer illiterate through cold calling, VB's Martijn Grooten uses his own experience to share some advice on how to investigate such scams.

Read more  

Meltdown and Spectre attacks mitigated by operating system updates

Posted by   Martijn Grooten on   Jan 4, 2018

Just four days into the new year, two serious attacks in modern processors, dubbed Meltdown and Spectre, have been discovered. The attacks can be mitigated by patches to the operating system, but anti-virus software vendors need to make sure their products are compatible with the patches.

Read more  

Conference review: AVAR 2017

Posted by   Martijn Grooten on   Dec 22, 2017

Martijn Grooten reports on the 20th AVAR conference, which took place earlier in December in Beijing, China.

Read more  

Conference review: Botconf 2017

Posted by   Virus Bulletin on   Dec 22, 2017

Virus Bulletin researchers report back from a very interesting fifth edition of Botconf, the botnet fighting conference.

Read more  

VB2017 videos on attacks against Ukraine

Posted by   Martijn Grooten on   Dec 21, 2017

(In)security is a global issue that affects countries around the world, but in recent years none has been so badly hit as Ukraine. Today, we publish the videos of two VB2017 talks about attacks that hit Ukraine particularly badly: a talk by Alexander Adamov (NioGuard) on (Not)Petya and related attacks, and another by Robert Lipovsky and Anton Cherepanov (ESET) on Industroyer.

Read more  

Facebook helps you determine whether emails really came from its servers

Posted by   Martijn Grooten on   Dec 21, 2017

On its website, Facebook now shows which emails it has sent you recently, thus helping you to determine which emails are real, and which should be discarded as phishing.

Read more  

Vulnerability disclosure and botnet takedown not to be hindered by Wassenaar Arrangement

Posted by   Martijn Grooten on   Dec 19, 2017

Clarification in the language of the Wassenaar Arrangement, a multilateral export control regime for conventional arms and dual-use goods and technologies, means those involved in vulnerability disclosure or botnet takedown won't have to worry about acquiring an export licence.

Read more  

Search blog

VB2019 paper: Play fuzzing machine - hunting iOS and macOS kernel vulnerabilities automatically and smartly

In a paper presented at VB2019 in London, Trend Micro researchers Lilang Wu and Moony Li explained how the hunt for vulnerabilities in MacOS and iOS operating systems can be made both smarter and more automatic. Today we publish both their paper and the r…
Apple’s MacOS and iOS operating systems are often praised for their security. Yet vulnerabilities in both operating systems are regularly being found and exploited, especially by… https://www.virusbulletin.com/blog/2020/03/vb2019-paper-play-fuzzing-machine-hunting-ios-and-macos-kernel-vulnerabilities-automatically-and-smartly/

AV-Test.org unveils latest results

Trend Micro achieves pass; Microsoft and McAfee fail to reach certification standards.
Trend Micro achieves pass; Microsoft and McAfee fail to reach certification standards. Independent testing body AV-Test.org has released its latest set of quarterly test results,… https://www.virusbulletin.com/blog/2010/11/av-test-org-unveils-latest-results/

AV-Test.org issues latest round of testing results

Symantec and Microsoft outdo Trend and McAfee in live tests.
Symantec and Microsoft outdo Trend and McAfee in live tests. Independent testing organisation AV-Test.org has released its latest round of test results in a simplified format,… https://www.virusbulletin.com/blog/2010/08/av-test-org-issues-latest-round-testing-results/

Tough weekend for AV giants as FPs and DNS issues hit

Trend false alert cripples users' systems, Sophos sites taken out by DNS mixup.
Trend false alert cripples users' systems, Sophos sites taken out by DNS mixup. Two of the larger security firms, Trend Micro and Sophos, had a busy weekend cleaning up after… https://www.virusbulletin.com/blog/2008/09/tough-weekend-av-giants-fps-and-dns-issues-hit/

Trend OfficeScan flaws labelled highly critical

Web-delivered products at risk of allowing remote access.
Web-delivered products at risk of allowing remote access. A set of vulnerabilities have been reported in Trend Micro's Officescan product, which have been flagged with the 'Highly… https://www.virusbulletin.com/blog/2008/08/trend-officescan-flaws-labelled-highly-critical/

More 'trusted sites' carrying iframe danger

Big wave of website infections could affect tens of thousands of sites, Trend Micro latest victim.
Big wave of website infections could affect tens of thousands of sites, Trend Micro latest victim. Earlier this week McAfee reported a major outbreak of website infections, with as… https://www.virusbulletin.com/blog/2008/03/more-trusted-sites-carrying-iframe-danger/

Trend Micro buys email encryption firm

UK company taken over by security giant.
UK company taken over by security giant. Global security superpower Trend Micro has invested in a small email encryption firm based in Bristol, UK. The company, Identum, emerged… https://www.virusbulletin.com/blog/2008/02/trend-micro-buys-email-encryption-firm/

Vista SP1 clashing with AV products

Service Pack causing issues for several security suites.
Service Pack causing issues for several security suites.Microsoft has released details of several software products that are known to have problems running in conjunction with… https://www.virusbulletin.com/blog/2008/02/vista-sp1-clashing-av-products/

Meta-phishing

Phishing warning contains link to... phishing site.
Phishing warning contains link to... phishing site. The anti-malware industry can congratulate itself for there being an increasing awareness among users about phishing. Users are… https://www.virusbulletin.com/blog/2008/02/meta-phishing/

Trend vs. ClamAV patent row hots up

Free software advocates call for boycott of Trend.
Free software advocates call for boycott of Trend. With legal proceedings ongoing between Trend Micro and gateway appliance specialist Barracuda Networks, concerning Barracuda's… https://www.virusbulletin.com/blog/2008/02/trend-vs-clamav-patent-row-hots/

Barracuda battles Trend Micro patent claims

Trend demands licensing for gateway virus scanning idea.
Trend demands licensing for gateway virus scanning idea.Barracuda Networks has announced it is fighting a legal battle against Trend Micro, who has claimed US patent rights to the… https://www.virusbulletin.com/blog/2008/01/barracuda-battles-trend-micro-patent-claims/

Ledger poisons Google

Actor's death exploited by malware writers to infect computers.
Actor's death exploited by malware writers to infect computers. The death of actor Heath Ledger on Tuesday had barely been confirmed a few hours when malicious websites started… https://www.virusbulletin.com/blog/2008/01/ledger-poisons-google/

Polyglot worm spreads through MSN

Worm changes language to target wide audience.
Worm changes language to target wide audience. A new worm has been discovered that spreads through MSN Messenger. Once active, the worm opens random TCP ports to connect to an IRC… https://www.virusbulletin.com/blog/2008/01/polyglot-worm-spreads-through-msn/

Trend Micro invests in leak-prevention firm

Further data security added to portfolio.
Further data security added to portfolio. Security giant Trend Micro has acquired California-based data leak prevention specialist Provilla, to add its data protection technologies… https://www.virusbulletin.com/blog/2007/10/trend-micro-invests-leak-prevention-firm/

String of vulnerabilities found in ServerProtect

Several minor holes patched in Trend Micro corporate product.
Several minor holes patched in Trend Micro corporate product. A series of security issues have been reported in Trend Micro's ServerProtect server-level product, which could allow… https://www.virusbulletin.com/blog/2007/08/string-vulnerabilities-found-serverprotect/

ZOO archive issues hit security vendors

Errors handling rare format patched by four AV and anti-spam products.
Errors handling rare format patched by four AV and anti-spam products. A researcher has revealed details of flawed implementation of a somewhat archaic archive format, .zoo, which… https://www.virusbulletin.com/blog/2007/05/zoo-archive-issues-hit-security-vendors/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.