VB Blog

VB2018 paper: Draw me like one of your French APTs – expanding our descriptive palette for cyber threat actors

Posted by   Martijn Grooten on   Jan 7, 2019

Today, we publish the VB2018 paper by Chronicle researcher Juan Andres Guerrero-Saade, who argues we should change the way we talk about APT actors.

Read more  

Book Review: Cyber Wars

Posted by   Martijn Grooten on   Dec 19, 2018

VB Editor Martijn Grooten reviews Charles Arthur's Cyber Wars, which looks at seven prominent hacks and attacks, and the lessons we can learn from them.

Read more  

VB2018 paper: Office bugs on the rise

Posted by   Martijn Grooten on   Dec 14, 2018

At VB2018 Sophos researcher Gábor Szappanos provided a detailed overview of Office exploit builders, and looked in particular at the widely exploited CVE-2017-0199. Today we publish his paper and release the video of his presentation.

Read more  

VB2018 video: The Big Bang Theory by APT-C-23

Posted by   Martijn Grooten on   Dec 12, 2018

Today, we release the video of the VB2018 presentation by Check Point researcher Aseel Kayal, who connected the various dots relating to campaigns by the APT-C-23 threat group.

Read more  

VB2019 London - join us for the most international threat intelligence conference!

Posted by   Martijn Grooten on   Dec 11, 2018

VB calls on organisations and individuals involved in threat intelligence from around the world to participate in next year's Virus Bulletin conference.

Read more  

VB2018 paper: Tracking Mirai variants

Posted by   Martijn Grooten on   Dec 7, 2018

Today, we publish the VB2018 paper by Qihoo 360 researchers Ya Liu and Hui Wang, on extracting data from variants of the Mirai botnet to classify and track variants.

Read more  

VB2018 paper: Hide'n'Seek: an adaptive peer-to-peer IoT botnet

Posted by   Martijn Grooten on   Dec 6, 2018

2018 has seen an increase in the variety of botnets living on the Internet of Things - such as Hide'N'Seek, which is notable for its use of peer-to-peer for command-and-control communication. Today, we publish the VB2018 paper by Bitdefender researchers Adrian Șendroiu and Vladimir Diaconescu, who studied the Hide'N'Seek IoT botnet. We also release the recording of their presentation.

Read more  

New paper: Botception: botnet distributes script with bot capabilities

Posted by   Martijn Grooten on   Dec 4, 2018

In a new paper, Avast researchers Jan Sirmer and Adolf Streda look at how a spam campaign sent via the Necurs botnet was delivering the Flawed Ammyy RAT. As well as publishing the paper, we have also released the video of the reseachers' VB2018 presentation on the same topic.

Read more  

VB2018 video: Behind the scenes of the SamSam investigation

Posted by   Martijn Grooten on   Nov 29, 2018

Today we have published the video of the VB2018 presentation by Andrew Brandt (Sophos) on the SamSam ransomware, which became hot news following the indictment of its two suspected authors yesterday.

Read more  

VB2018 video: Foreverdays: tracking and mitigating threats targeting civil society orgs

Posted by   Martijn Grooten on   Nov 28, 2018

Today, we publish the video of the VB2018 presentation by CitizenLab researchers Masashi Nishihata and John Scott Railton, on threats faced by civil society.

Read more  

Search blog

VB2006 call for papers

The deadline for submitting paper proposals for VB2006 is fast approaching.
The deadline for submitting paper proposals for VB2006 is fast approaching. The deadline for submitting paper proposals for VB2006 is fast approaching. Abstracts of approximately… https://www.virusbulletin.com/blog/2006/02/call-papers/

2006

Latest news from the anti-virus industry provided by independent anti-virus advisors, Virus Bulletin
NewsBitDefender vulnerability disclosedDetails released of overflow issue reported and patched.18 December 2006UK taxman warns of rebate phishMails promising tax refund just… https://www.virusbulletin.com/blog/2006/

CME initiative sets forth

US-CERT will officially unveil its Common Malware Enumeration (CME) initiative this month.
US-CERT will officially unveil its Common Malware Enumeration (CME) initiative this month. The scheme, which will be operated by MITRE, and will work very much like the current… https://www.virusbulletin.com/blog/2005/09/cme-initiative-sets-forth/

A global view

live spam map showing exactly where spam is coming from.
live spam map showing exactly where spam is coming from. Maintainers of cartographic collections may be interested in a new map created by Mailinator, a company that provides… https://www.virusbulletin.com/blog/2005/09/global-view/

Addendum: August 2005 Netware 6.5 Comparative Review

VB regrets that Symantec was not included in NetWare 6.5 comparative review published in the August 2005 issue of Virus Bulletin
VB regrets that Symantec was not included in NetWare 6.5 comparative review published in the August 2005 issue of Virus Bulletin Unfortunately, due to a combination of… https://www.virusbulletin.com/blog/2005/09/addendum-august-2005-netware-6-5-comparative-review/

Latest VGrep

The latest version of the virus name lookup tool - VGrep, is now available.
The latest version of the virus name lookup tool - VGrep, is now available. VGrep is a system produced in an attempt to clear up some of the confusion surrounding the naming of… https://www.virusbulletin.com/blog/2005/09/latest-vgrep/

Czech spammers receive fines

The Czech Office for Personal Data Protection (UOOU) imposes first fines for spamming offences.
The Czech Office for Personal Data Protection (UOOU) imposes first fines for spamming offences. The Czech Office for Personal Data Protection (UOOU) has imposed its first fines for… https://www.virusbulletin.com/blog/2005/09/czech-spammers-receive-fines/

Spam 'hotline' for German users

German email users can now report spam directly to the Federation of German Consumer Organisations (vzbv)
German email users can now report spam directly to the Federation of German Consumer Organisations (vzbv)German email users can now report spam directly to the Federation of German… https://www.virusbulletin.com/blog/2005/09/spam-hotline-german-users/

Symantec snaps up Wholesecurity

Symantec announces plans to purchase privately held behavioural endpoint security solutions provider WholeSecurity Inc.
Symantec announces plans to purchase privately held behavioural endpoint security solutions provider WholeSecurity Inc. WholeSecurity’s behavioural detection technology identifies… https://www.virusbulletin.com/blog/2005/09/symantec-snaps-wholesecurity/

AVIEN virtual conference

Organisers of the AVIEN/AVIEWS virtual conference issue call for papers.
Organisers of the AVIEN/AVIEWS virtual conference issue call for papers. The organisers of the inaugural AVIEN/AVIEWS virtual conference have issued a call for papers. The… https://www.virusbulletin.com/blog/2005/09/avien-virtual-conference/

September

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2005/09/

Trial and retribution

Former AOL employee Jason Smathers sentenced to 15 months imprisonment for selling customers' email details to spammers.
Former AOL employee Jason Smathers sentenced to 15 months imprisonment for selling customers' email details to spammers. Former AOL employee Jason Smathers has been sentenced to 15… https://www.virusbulletin.com/blog/2005/08/trial-and-retribution/

The naming game

CA becomes latest AV firm to join name game with the announcement of its new division
CA becomes latest AV firm to join name game with the announcement of its new division First there was Kaspersky Lab and ICSA Labs, then came along MessageLabs and SophosLabs. Now… https://www.virusbulletin.com/blog/2005/08/naming-game/

More hash woes

For the second year running, research presented at the annual Crypto conference raised concerns over the security of commonly-used hash functions.
For the second year running, research presented at the annual Crypto conference raised concerns over the security of commonly-used hash functions. For the second year running,… https://www.virusbulletin.com/blog/2005/08/more-hash-woes/

Black Hat round-up

Andrew Lee shares his highlights of the Black Hat Briefings USA
Andrew Lee shares his highlights of the Black Hat Briefings USA In the midsummer heat of the Nevada desert, close to two thousand people donned their sunscreen and their coolest… https://www.virusbulletin.com/blog/2005/08/black-hat-round/

AhnLab wins in anti-spyware ruling

Court approves AhnLab's spyware classification
Court approves AhnLab's spyware classification The Southern District Court of Seoul ruled this week that AhnLab's detection and labelling as spyware of the product of software… https://www.virusbulletin.com/blog/2005/08/ahnlab-wins-anti-spyware-ruling/

August

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2005/08/

Sun, sea, sand and scams

310 people arrested in Malaga after an operation involving the FBI, the US Postal Service and the Spanish police.
310 people arrested in Malaga after an operation involving the FBI, the US Postal Service and the Spanish police. Authorities in Malaga, Spain, must be congratulated on a bumper… https://www.virusbulletin.com/blog/2005/07/sun-sea-sand-and-scams/

Spammer reformed?

Scott Richter, aka the 'Spam King', is no longer classed as a spammer according to Spamhaus's authoritative Register of Known Spam Operations (ROKSO)
Scott Richter, aka the 'Spam King', is no longer classed as a spammer according to Spamhaus's authoritative Register of Known Spam Operations (ROKSO) Scott Richter, aka the 'Spam… https://www.virusbulletin.com/blog/2005/07/spammer-reformed/

Hoax alert

New hoax email comes to light after the launch in the UK of a campaign involving personal emergency contact numbers
New hoax email comes to light after the launch in the UK of a campaign involving personal emergency contact numbers It has been a long while since VB reported on any virus hoaxes,… https://www.virusbulletin.com/blog/2005/07/hoax-alert/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.