VB Blog

Avast to present technical details of CCleaner hack at VB2017

Posted by   Martijn Grooten on   Oct 2, 2017

The recently discovered malicious CCleaner version has become one of the biggest security stories of 2017. Two researchers from Avast, the company that had recently acquired CCleaner developer Piriform, will share the results of their investigations at VB2017 in Madrid this week.

Read more  

VB2017 preview: Walking in your enemy's shadow: when fourth-party collection becomes attribution hell

Posted by   Martijn Grooten on   Oct 2, 2017

We preview the VB2017 paper by Kaspersky Lab researchers Juan Andrés Guerrero-Saade and Costin Raiu on fourth-party collection and its implications for attack attribution.

Read more  

VB2017 preview: Offensive malware analysis: dissecting OSX/FruitFly.B via a custom C&C server

Posted by   Martijn Grooten on   Sep 29, 2017

We preview Patrick Wardle's VB2017 paper, in which the Synack researcher analyses the mysterious OSX/FruitFly malware by setting up a custom C&C server.

Read more  

VB2017 - information for press

Posted by   Martijn Grooten on   Sep 28, 2017

More than 50 security industry experts will present conference papers to their peers at VB2017 next week, and there are several papers on the programme with a certain newsworthiness. There is still time for cybersecurity journalists to apply for a press pass.

Read more  

VB2017 preview: BPH exposed - RBN never left they just adapted and evolved. Did you?

Posted by   Martijn Grooten on   Sep 25, 2017

We preview the VB2017 paper by Dhia Mahjoub (OpenDNS) and Jason Passwaters (Intel471) who combine an actor-centric and a network-centric approach to analysing bulletproof hosting operations.

Read more  

Test your technical and mental limits in the VB2017 foosball tournament

Posted by   Martijn Grooten on   Sep 22, 2017

As has become tradition, VB2017 will once again see a security industry table football tournament. Register your team now for some great fun and adrenaline-filled matches in between sessions in Madrid!

Read more  

The case against running Windows XP is more subtle than we think it is

Posted by   Martijn Grooten on   Sep 21, 2017

Greater Manchester Police is one of many organizations still running Windows XP on some of its systems. This is bad practice, but the case against running XP is far more subtle than we often pretend it is.

Read more  

Hot FinSpy research completes VB2017 programme

Posted by   Martijn Grooten on   Sep 21, 2017

Researchers from ESET have found a new way in which the FinSpy/FinFisher 'government spyware' can infect users, details of which they will present at VB2017 in Madrid.

Read more  

Transparency is essential when monitoring your users' activities

Posted by   Virus Bulletin on   Sep 20, 2017

Activity monitoring by security products in general, and HTTPS traffic inspection in particular, are sensitive issues in the security community. There is a time and a place for them, VB's Martijn Grooten argues, but only when they are done right.

Read more  

VB2017 preview: Android reverse engineering tools: not the usual suspects

Posted by   Martijn Grooten on   Sep 19, 2017

We preview the VB2017 paper by Fortinet researcher Axelle Apvrille, in which she looks at some less obvious tools for reverse engineering Android malware.

Read more  

Search blog

WordPress pingback used for DDoS attacks

Millions of sites could potentially be used in attack.
Millions of sites could potentially be used in attack. Security firm Incapsula reports that it has discovered a DDoS attack on a gaming website using thousands of legitimate… https://www.virusbulletin.com/blog/2013/05/wordpress-pingback-used-ddos-attacks/

May issue of VB published

The May issue of Virus Bulletin is now available for subscribers to download.
The May issue of Virus Bulletin is now available for subscribers to download. The May 2013 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2013/05/may-issue-vb-published/

May

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2013/05/

Apache binaries replaced by stealth malcious ones

Malicious servers opening backdoors, performing redirects.
Malicious servers opening backdoors, performing redirects. Researchers at ESET and Sucuri have discovered a modified Apache binary that is used on hundreds of web servers to… https://www.virusbulletin.com/blog/2013/04/apache-binaries-replaced-stealth-malcious-ones/

Dutchman arrested in Spain for DDoS attacks on Spamhaus

Suspect drove around in 'mobile bunker' to co-ordinate attacks.
Suspect drove around in 'mobile bunker' to co-ordinate attacks. Police in Spain have arrested a 35-year-old Dutchman, believed to be responsible for the DDoS attacks on Spamhaus… https://www.virusbulletin.com/blog/2013/04/dutchman-arrested-spain-ddos-attacks-spamhaus/

Cybercriminals quick to exploit emerging news

Malicious emails appear a matter of hours after news of explosions in the US.
Malicious emails appear a matter of hours after news of explosions in the US. It would have come as little surprise to anyone in the security industry that within hours of this… https://www.virusbulletin.com/blog/2013/04/cybercriminals-quick-exploit-emerging-news/

Different focus on spam needed

What happens before the filter doesn't matter too much.
What happens before the filter doesn't matter too much. It is surprisingly difficult to get accurate figures for the amount of spam that is sent globally, yet everyone agrees that… https://www.virusbulletin.com/blog/2013/04/different-focus-spam-needed/

VB2013 programme announced

Exciting range of topics to be covered at VB conference in Berlin this October.
Exciting range of topics to be covered at VB conference in Berlin this October. The VB conference selection committee have been busily assessing more than 150 proposals submitted… https://www.virusbulletin.com/blog/2013/04/programme-announced/

AV-Comparatives reveals detection and protection reports

Figures released for long-term real-world tests and large-scale scanning measures.
Figures released for long-term real-world tests and large-scale scanning measures. Hot on the heels of the recent report from AV-Test, the latest sets of figures from Austrian… https://www.virusbulletin.com/blog/2013/04/av-comparatives-reveals-detection-and-protection-reports/

AV-Test releases first Windows 8 test stats

Corporate and consumer products rated against Windows Defender baseline.
Corporate and consumer products rated against Windows Defender baseline. Independent testing house AV-Test.org has released its first set of figures for solutions run on Windows 8,… https://www.virusbulletin.com/blog/2013/04/av-test-releases-first-windows-8-test-stats/

April issue of VB published

The April issue of Virus Bulletin is now available for subscribers to download.
The April issue of Virus Bulletin is now available for subscribers to download. The April 2013 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2013/04/april-issue-vb-published/

April

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2013/04/

Catch rates drop in latest VBSpam tests

Spam more of a challenge for majority of products.
Spam more of a challenge for majority of products. The results of VB's latest spam filter test show that spam has become more difficult to filter - with 15 of the 19 products… https://www.virusbulletin.com/blog/2013/03/catch-rates-drop-latest-vbspam-tests/

Spam link sends Android users to trojan proxy

Meanwhile, desktop users sent to (relatively harmless) weight-loss site.
Meanwhile, desktop users sent to (relatively harmless) weight-loss site. Links found in certain spam emails which redirect desktop users to a phony weight-loss website, have been… https://www.virusbulletin.com/blog/2013/03/spam-link-sends-android-users-trojan-proxy/

March

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2013/03/

March issue of VB published

The March issue of Virus Bulletin is now available for subscribers to download.
The March issue of Virus Bulletin is now available for subscribers to download. The March 2013 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2013/03/march-issue-vb-published/

VB data supports Google's claim to having reduced compromised accounts

Internet giant may indeed do something right; Yahoo! has a real problem.
Internet giant may indeed do something right; Yahoo! has a real problem. Internet giant Google claims that a 'complex risk analysis' using 'more than 120 variables' has reduced the… https://www.virusbulletin.com/blog/2013/02/vb-data-supports-google-s-claim-having-reduced-compromised-accounts/

Hundreds of APTs linked to Chinese Army department

'Unit 61398' employs hundreds of people.
'Unit 61398' employs hundreds of people. A new report by security firm Mandiant links a large number of cyber-espionage cases to a department of the Chinese army. The report is… https://www.virusbulletin.com/blog/2013/02/hundreds-apts-linked-chinese-army-department/

Massive drop in PPI SMS spam after spammers fined

Levels still higher than for most of 2012.
Levels still higher than for most of 2012. Security firm Cloudmark has reported a significant drop in the amount of PPI (Payment Protection Insurance) spam sent via SMS in the UK… https://www.virusbulletin.com/blog/2013/02/massive-drop-ppi-sms-spam-after-spammers-fined/

Drop reported in infected computers worldwide

Nearly one third of computers still found to be infected.
Nearly one third of computers still found to be infected. The proportion of infected computers worldwide decreased from 38.49% in 2011 to 31.98% last year, according to an annual… https://www.virusbulletin.com/blog/2013/02/drop-reported-infected-computers-worldwide/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.