VB Blog

VB2017 paper: Nine circles of Cerber

Posted by   Martijn Grooten on   Dec 15, 2017

Cerber is one of the major names in the world of ransomware, and last year, Check Point released a decryption service for the malware. Today, we publish a VB2017 paper by Check Point's Stanislav Skuratovich describing how the Cerber decryption tool worked; we have also uploaded the video of the presentation of this paper, by Or Eshed and Yaniv Balmas.

Read more  

Attack on Fox-IT shows how a DNS hijack can break multiple layers of security

Posted by   Martijn Grooten on   Dec 14, 2017

Dutch security firm Fox-IT deserves praise for being open about an attack on its client network. There are some important lessons to be learned about DNS security from its post-mortem.

Read more  

Throwback Thursday: BGP - from route hijacking to RPKI: how vulnerable is the Internet?

Posted by   Martijn Grooten on   Dec 14, 2017

For this week's Throwback Thursday, we look back at the video of a talk Level 3's Mike Benjamin gave at VB2016 in Denver, on BGP and BGP hijacks.

Read more  

Security Planner gives security advice based on your threat model

Posted by   Martijn Grooten on   Dec 13, 2017

Citizen Lab's Security Planner helps you improve your online safety, based on the specific threats you are facing.

Read more  

VB2017 video: Spora: the saga continues a.k.a. how to ruin your research in a week

Posted by   Martijn Grooten on   Dec 11, 2017

Today, we publish the video of the VB2017 presentation by Avast researcher Jakub Kroustek and his former colleague Előd Kironský, now at ESET, who told the story of Spora, one of of the most prominent ransomware families of 2017.

Read more  

VB2017 paper: Modern reconnaissance phase on APT – protection layer

Posted by   Martijn Grooten on   Dec 7, 2017

During recent research, Cisco Talos researchers observed the ways in which APT actors are evolving and how a reconnaissance phase is included in the infection vector in order to protect valuable zero-day exploits or malware frameworks. At VB2017 in Madrid, two of those researchers, Paul Rascagneres and Warren Mercer, presented a paper detailing five case studies that demonstrate how the infection vector is evolving. Today we publish both Paul and Warren's paper and the recording of their presentation.

Read more  

VB2017 paper: Peering into spam botnets

Posted by   Martijn Grooten on   Dec 1, 2017

At VB2017 in Madrid, CERT Poland researchers Maciej Kotowicz and Jarosław Jedynak presented a paper detailing their low-level analysis of five spam botnets. Today we publish their full paper.

Read more  

Throwback Thursday: Anti-malware testing undercover

Posted by   Martijn Grooten on   Nov 30, 2017

We look back at the VB2016 presentation by Righard Zwienenberg (ESET) and Luis Corrons (Panda Security), in which they discussed various issues relating to anti-malware testing.

Read more  

Virus Bulletin relaunches VB Security Jobs Market for both employers and job seekers

Posted by   Martijn Grooten on   Nov 30, 2017

As an independent body in the IT security industry, Virus Bulletin is in an ideal position to act as a global source of information both about jobs currently available in the field and about those candidates currently seeking to start or progress their career in the industry - which is why we have relaunched the VB Security Jobs Market.

Read more  

VB2017 paper: Offensive malware analysis: dissecting OSX/FruitFly.B via a custom C&C server

Posted by   Martijn Grooten on   Nov 29, 2017

At VB2017 in Madrid, macOS malware researcher Patrick Wardle presented the details of a specific piece of Mac malware, FruitFly, which he analysed through a custom C&C server - a technique that will also be of interest for researchers of malware on other platforms. Today we publish both Patrick's paper and the recording of his presentation.

Read more  

Search blog

Synchronized malware identification for the new year

Causing a stir in the anti-virus community last month was the announcement of a new US-led initiative whose aim is to achieve threat synchronization.
Causing a stir in the anti-virus community last month was the announcement of a new US-led initiative whose aim is to achieve threat synchronization. The US Department of… https://www.virusbulletin.com/blog/2004/12/synchronized-malware-identification-new-year/

No deal for AOL employee

Judge refuses to accept guilty plea.
Judge refuses to accept guilty plea. A federal judge has refused to accept the guilty plea of a former AOL employee charged with selling the company's customer email list to… https://www.virusbulletin.com/blog/2004/12/no-deal-aol-employee/

Teen brought to book for Randex

British teenager sentenced.
British teenager sentenced. A 16-year-old British teenager has been given a six-month suspended sentence for his part in distributing the Randex worm. A total of four suspects… https://www.virusbulletin.com/blog/2004/12/teen-brought-book-randex/

Trend ousts McAfee on Hotmail

Trend Micro to take over from McAfee as new provider of virus scanning for MSN.
Trend Micro to take over from McAfee as new provider of virus scanning for MSN. Trend Micro has announced that it is to be the new provider of virus scanning for Microsoft's MSN… https://www.virusbulletin.com/blog/2004/12/trend-ousts-mcafee-hotmail/

Deal for AOL employee

AOL worker accused of selling customer email lists offered deal.
AOL worker accused of selling customer email lists offered deal. A former AOL employee charged with selling the company's customer email list to spammers has been offered a plea… https://www.virusbulletin.com/blog/2004/12/deal-aol-employee/

Virus Bulletin RSS feeds now support Live Bookmarks

Virus Bulletin RSS feeds now support 'Live bookmarks' allowing you to browse our latest headlines directly from your browsers bookmarks menu.
Virus Bulletin RSS feeds now support 'Live bookmarks' allowing you to browse our latest headlines directly from your browsers bookmarks menu. The Virus Bulletin RSS feeds now… https://www.virusbulletin.com/blog/2004/12/rss-feeds-now-support-live-bookmarks/

ISP wins $1 billion against spammers

Largest judgement against spammers to date.
Largest judgement against spammers to date. A company in Iowa has been awarded a total of more than $1 billion in what is believed to be the largest judgement to date against… https://www.virusbulletin.com/blog/2004/12/isp-wins-1-billion-against-spammers/

GIANT purchase for Microsoft

Microsoft buys anti-spyware provider.
Microsoft buys anti-spyware provider. Microsoft announced yesterday that it has acquired anti-spyware firm GIANT Company Software Inc. Microsoft says it plans to use… https://www.virusbulletin.com/blog/2004/12/giant-purchase-microsoft/

Anti-spam law 'unconstitutional'

Judge says Maryland anti-spam law is flawed.
Judge says Maryland anti-spam law is flawed. A judge has ruled that Maryland's anti-spam law is flawed because it violates the commerce clause of the US Constitution. The… https://www.virusbulletin.com/blog/2004/12/anti-spam-law-unconstitutional/

Symantec to acquire Veritas?

Just in time for Christmas?
Just in time for Christmas? Symantec may be close to acquiring data storage firm Veritas, according to reports circulating on the Internet. AV firm Symantec, which has something… https://www.virusbulletin.com/blog/2004/12/symantec-acquire-veritas/

Spyware-led investigations

Australian police given power to use spyware.
Australian police given power to use spyware. Police in Australia have been awarded the right to use spyware for evidence-gathering, thanks to a new law passed last week. Under… https://www.virusbulletin.com/blog/2004/12/spyware-led-investigations/

DDoS stunt over

Lycos ends its 'make love not spam' campaign - but not before the file had been trojanised...
Lycos ends its 'make love not spam' campaign - but not before the file had been trojanised... Lycos has announced that it has ended its controversial 'Make Love not Spam'… https://www.virusbulletin.com/blog/2004/12/ddos-stunt-over/

More spammers for the slammer?

Microsoft continues to make good use of its legal resources.
Microsoft continues to make good use of its legal resources. Microsoft has filed seven new lawsuits against spammers. The company is suing the individuals (who currently remain… https://www.virusbulletin.com/blog/2004/12/more-spammers-slammer/

Save your soul with spam

Spam goes yet one step further - spiritual salvation!
Spam goes yet one step further - spiritual salvation! We are all accustomed to receiving spam that advertises herbal medicines, designer watches, new mortgages and online degrees… https://www.virusbulletin.com/blog/2004/12/save-your-soul-spam/

Season's greetings

The VB team wishes all Virus Bulletin readers a very happy Christmas and a prosperous new year.
The VB team wishes all Virus Bulletin readers a very happy Christmas and a prosperous new year. The VB team wishes all Virus Bulletin readers a very happy Christmas and a… https://www.virusbulletin.com/blog/2004/12/season-s-greetings/

Email authentication in the open

35 high-profile organisations sign open letter, calling for a rapid rollout of email authentication technologies
35 high-profile organisations sign open letter, calling for a rapid rollout of email authentication technologies Last month an open letter was sent to members of the US Federal… https://www.virusbulletin.com/blog/2004/12/email-authentication-open/

Hotmail originator turns to anti-spam

Sabeer Bhatia, the man behind Hotmail, has announced that he has invested in an anti-spam company
Sabeer Bhatia, the man behind Hotmail, has announced that he has invested in an anti-spam company Sabeer Bhatia, the man behind Hotmail, has announced that he has invested in an… https://www.virusbulletin.com/blog/2004/12/hotmail-originator-turns-anti-spam/

Errata - Windows Server 2003 comparative review

VB regrets that three mistakes crept into the Comparative review published in the November issue.
VB regrets that three mistakes crept into the Comparative review published in the November issue. The mistakes were as follows: The version number for Sophos Anti Virus should… https://www.virusbulletin.com/blog/2004/12/errata-windows-server-2003-comparative-review/

Academic research journal

Announcement and first call for papers of the European Research Journal in Computer Virology
Announcement and first call for papers of the European Research Journal in Computer Virology October saw the announcement and first call for papers of the European Research… https://www.virusbulletin.com/blog/2004/12/academic-research-journal/

Most-spammed sees end in sight

Bill Gates says he hopes to have the spam problem under control within two years - again.
Bill Gates says he hopes to have the spam problem under control within two years - again. The world's most spammed email recipient, Bill Gates, said last month that he hopes to… https://www.virusbulletin.com/blog/2004/12/most-spammed-sees-end-sight/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.