VB Blog

VB2017 paper: Nine circles of Cerber

Posted by   Martijn Grooten on   Dec 15, 2017

Cerber is one of the major names in the world of ransomware, and last year, Check Point released a decryption service for the malware. Today, we publish a VB2017 paper by Check Point's Stanislav Skuratovich describing how the Cerber decryption tool worked; we have also uploaded the video of the presentation of this paper, by Or Eshed and Yaniv Balmas.

Read more  

Attack on Fox-IT shows how a DNS hijack can break multiple layers of security

Posted by   Martijn Grooten on   Dec 14, 2017

Dutch security firm Fox-IT deserves praise for being open about an attack on its client network. There are some important lessons to be learned about DNS security from its post-mortem.

Read more  

Throwback Thursday: BGP - from route hijacking to RPKI: how vulnerable is the Internet?

Posted by   Martijn Grooten on   Dec 14, 2017

For this week's Throwback Thursday, we look back at the video of a talk Level 3's Mike Benjamin gave at VB2016 in Denver, on BGP and BGP hijacks.

Read more  

Security Planner gives security advice based on your threat model

Posted by   Martijn Grooten on   Dec 13, 2017

Citizen Lab's Security Planner helps you improve your online safety, based on the specific threats you are facing.

Read more  

VB2017 video: Spora: the saga continues a.k.a. how to ruin your research in a week

Posted by   Martijn Grooten on   Dec 11, 2017

Today, we publish the video of the VB2017 presentation by Avast researcher Jakub Kroustek and his former colleague Előd Kironský, now at ESET, who told the story of Spora, one of of the most prominent ransomware families of 2017.

Read more  

VB2017 paper: Modern reconnaissance phase on APT – protection layer

Posted by   Martijn Grooten on   Dec 7, 2017

During recent research, Cisco Talos researchers observed the ways in which APT actors are evolving and how a reconnaissance phase is included in the infection vector in order to protect valuable zero-day exploits or malware frameworks. At VB2017 in Madrid, two of those researchers, Paul Rascagneres and Warren Mercer, presented a paper detailing five case studies that demonstrate how the infection vector is evolving. Today we publish both Paul and Warren's paper and the recording of their presentation.

Read more  

VB2017 paper: Peering into spam botnets

Posted by   Martijn Grooten on   Dec 1, 2017

At VB2017 in Madrid, CERT Poland researchers Maciej Kotowicz and Jarosław Jedynak presented a paper detailing their low-level analysis of five spam botnets. Today we publish their full paper.

Read more  

Throwback Thursday: Anti-malware testing undercover

Posted by   Martijn Grooten on   Nov 30, 2017

We look back at the VB2016 presentation by Righard Zwienenberg (ESET) and Luis Corrons (Panda Security), in which they discussed various issues relating to anti-malware testing.

Read more  

Virus Bulletin relaunches VB Security Jobs Market for both employers and job seekers

Posted by   Martijn Grooten on   Nov 30, 2017

As an independent body in the IT security industry, Virus Bulletin is in an ideal position to act as a global source of information both about jobs currently available in the field and about those candidates currently seeking to start or progress their career in the industry - which is why we have relaunched the VB Security Jobs Market.

Read more  

VB2017 paper: Offensive malware analysis: dissecting OSX/FruitFly.B via a custom C&C server

Posted by   Martijn Grooten on   Nov 29, 2017

At VB2017 in Madrid, macOS malware researcher Patrick Wardle presented the details of a specific piece of Mac malware, FruitFly, which he analysed through a custom C&C server - a technique that will also be of interest for researchers of malware on other platforms. Today we publish both Patrick's paper and the recording of his presentation.

Read more  

Search blog

July issue of VB published

The July issue of Virus Bulletin is now available for subscribers to download.
The July issue of Virus Bulletin is now available for subscribers to download. The July 2006 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2006/07/july-issue-vb-published/

New faces

VB welcomes new Technical Consultant.
VB welcomes new Technical Consultant. VB is pleased to announce the arrival of a new team member. Following the departure of Matt Ham last month, John Hawes is joining us to take… https://www.virusbulletin.com/blog/2006/07/new-faces/

July

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/07/

m00p group members arrested

Three members of virus-writing gang held.
Three members of virus-writing gang held. Three members of a malware-writing group were arrested last month following investigations in Finland and the UK. The three men - a… https://www.virusbulletin.com/blog/2006/07/m00p-group-members-arrested/

Big bucks

AV software revenues increase.
AV software revenues increase. Anti-virus software revenues reached $4 billion worldwide last year - an increase of 13.6% on the previous year - according to industry analyst… https://www.virusbulletin.com/blog/2006/07/big-bucks/

Phone phishes

Watch out for fake SMS messages.
Watch out for fake SMS messages. A sneaky new phishing technique emerged last month, in which initial contact is made with victims via SMS text message. In the attack, an SMS… https://www.virusbulletin.com/blog/2006/07/phone-phishes/

Blue Frog croaks but may rise again

Open source project to create anti-spam opt-out tool based on the defunct Blue Frog service.
Open source project to create anti-spam opt-out tool based on the defunct Blue Frog service. Last month, Blue Frog, the anti-spam service offered by Blue Security, was forced to… https://www.virusbulletin.com/blog/2006/06/blue-frog-croaks-may-rise-again/

June issue of VB published

The June issue of Virus Bulletin is now available for subscribers to download.
The June issue of Virus Bulletin is now available for subscribers to download. The June 2006 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2006/06/june-issue-vb-published/

June

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/06/

OneCare goes live

Microsoft anti-virus goes on general release.
Microsoft anti-virus goes on general release.Microsoft's anti-virus software Windows Live OneCare is due to go on general release this month. OneCare, which has been available… https://www.virusbulletin.com/blog/2006/06/onecare-goes-live/

Bank takes steps to increase customer security

Bank signs deal with AV vendor in an attempt to stop phishers in their tracks.
Bank signs deal with AV vendor in an attempt to stop phishers in their tracks. In an attempt to prevent online banking fraud, a British bank has signed a deal with Finnish… https://www.virusbulletin.com/blog/2006/06/bank-takes-steps-increase-customer-security/

Gone phishing in Japan

Japan's first crackdown on organized phishing.
Japan's first crackdown on organized phishing. Police in Kyoto have arrested eight men in Japan's first crackdown on organized phishing. The men are suspected of belonging to a… https://www.virusbulletin.com/blog/2006/06/gone-phishing-japan/

Symantec vulnerability discovered - and fixed

Buffer overflow vulnerability found in corporate AV software.
Buffer overflow vulnerability found in corporate AV software.Symantec was quick to respond late last month to the discovery of a potentially critical vulnerability in the latest… https://www.virusbulletin.com/blog/2006/06/symantec-vulnerability-discovered-and-fixed/

Security survey and checklist

Attempt to gain better understanding of the costs of computer security incidents.
Attempt to gain better understanding of the costs of computer security incidents. Businesses in the US have been urged to complete a survey issued jointly by the US Departments of… https://www.virusbulletin.com/blog/2006/05/security-survey-and-checklist/

OECD calls for coordination and cooperation

OECD issues 'Recommendation on Cross-Border Cooperation in the Enforcement of Laws against Spam'.
OECD issues 'Recommendation on Cross-Border Cooperation in the Enforcement of Laws against Spam'. The Organization for Economic Cooperation and Development (OECD) has called on… https://www.virusbulletin.com/blog/2006/05/oecd-calls-coordination-and-cooperation/

VoIP phishing scam

New species of phish spotted.
New species of phish spotted. A new variety of phishing scam was spotted last month: VoIP phishing. Instead of coercing victims into entering their confidential details on a fake… https://www.virusbulletin.com/blog/2006/05/voip-phishing-scam/

May issue of VB published

The May issue of Virus Bulletin is now available for subscribers to download.
The May issue of Virus Bulletin is now available for subscribers to download. The May 2006 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2006/05/may-issue-vb-published/

May

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/05/

Spam papers available

Organizers of the 2006 Spam Conference encourage you to get reading.
Organizers of the 2006 Spam Conference encourage you to get reading. Papers and slides from the 2006 Spam Conference held at the end of March are now available online. The… https://www.virusbulletin.com/blog/2006/05/spam-papers-available/

VB job vacancy

There are currently no job vacancies at Virus Bulletin.
There are currently no job vacancies at Virus Bulletin. Posted on 8 June 2006 by Virus Bulletin https://www.virusbulletin.com/blog/2006/04/vb-job-vacancy/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.