VB Blog

VB2019 presentation: A deep dive into iPhone exploit chains

Posted by   Virus Bulletin on   Jan 10, 2020

In a last-minute presentation at VB2019 in London, John Bambenek of the University of Illinois at Urbana-Champaign discussed details of campaigns that used advanced iOS and Android exploit chains against China’s Uighur minority. Today we release the recording of John's presentation.

Read more  

Latest VBWeb report describes current state of the web-based threat landscape

Posted by   Helen Martin on   Jan 8, 2020

Today we released the Winter 2020 VBWeb report, detailing the performance of web security products against live web threats and looking at the current state of the web-based threat landscape.

Read more  

VB2019 paper: Catch me if you can: detection of injection exploitation by validating query and API integrity

Posted by   Virus Bulletin on   Jan 6, 2020

In a paper presented at VB2019 in London, Prismo Systems researchers Abhishek Singh and Ramesh Mani discussed code injection vulnerabilities and presented a tool that could detect this vulnerability class. Today we publish their paper and the recording of their presentation.

Read more  

Virus Bulletin says a fond farewell and thank you to Martijn Grooten

Posted by   Helen Martin on   Dec 31, 2019

As VB Editor Martijn Grooten steps down from his role to move on to new challenges, the team wish him a fond farewell and the very best of luck in his future endeavours.

Read more  

VB2019 paper: Never before had Stierlitz been so close to failure (or: what is a Soviet super-spy doing in a popular bundleware for Mac?)

Posted by   Martijn Grooten on   Dec 27, 2019

Today, we publish the VB2019 paper and video by Sophos researcher Sergei Shevchenko in which he analyses a popular yet unnamed piece of macOS ‘bundleware’.

Read more  

Parting thoughts 5: bringing the good news

Posted by   Martijn Grooten on   Dec 23, 2019

In the final of a five-part series of blog posts, departing VB Editor Martijn Grooten argues for more emphasis on the good news in security, especially that which is more subtle.

Read more  

Parting thoughts 4: the big picture

Posted by   Virus Bulletin on   Dec 20, 2019

In the fourth of a five-part series of blog posts, departing VB Editor Martijn Grooten explains why security researchers should refer to other people's work.

Read more  

Parting thoughts 3: taking security seriously

Posted by   Martijn Grooten on   Dec 19, 2019

In the third of a five-part series of blog posts, departing VB Editor Martijn Grooten explains why he believes security vendors should take their products' security more seriously.

Read more  

VB2019 paper: Exploring the Chinese DDoS landscape

Posted by   Martijn Grooten on   Dec 19, 2019

China has long been a hotbed of DDoS activities, and today we publish a VB2019 paper by Intezer researcher Nacho Sanmillan who looked at Chinese threat groups engaged in performing DDoS attacks. We have also uploaded the recording of his presentation.

Read more  

Parting thoughts 2: the need for education in security

Posted by   Martijn Grooten on   Dec 18, 2019

In the second of a five-part series of blog posts, departing VB Editor Martijn Grooten explains why he believes cybersecurity professionals need to educate themselves on the complexities of the real-world situations in which security is applied.

Read more  

Search blog

Save your soul with spam

Spam goes yet one step further - spiritual salvation!
Spam goes yet one step further - spiritual salvation! We are all accustomed to receiving spam that advertises herbal medicines, designer watches, new mortgages and online degrees… https://www.virusbulletin.com/blog/2004/12/save-your-soul-spam/

Season's greetings

The VB team wishes all Virus Bulletin readers a very happy Christmas and a prosperous new year.
The VB team wishes all Virus Bulletin readers a very happy Christmas and a prosperous new year. The VB team wishes all Virus Bulletin readers a very happy Christmas and a… https://www.virusbulletin.com/blog/2004/12/season-s-greetings/

Email authentication in the open

35 high-profile organisations sign open letter, calling for a rapid rollout of email authentication technologies
35 high-profile organisations sign open letter, calling for a rapid rollout of email authentication technologies Last month an open letter was sent to members of the US Federal… https://www.virusbulletin.com/blog/2004/12/email-authentication-open/

December

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2004/12/

Spam-reporting trial

Australia's latest anti-spam initiative
Australia's latest anti-spam initiative The Australian Communications Authority (ACA) is teaming up with Internet Service Provider Pacific Internet and software company… https://www.virusbulletin.com/blog/2004/12/spam-reporting-trial/

Australia to protect critical computer systems

Vulnerability assessment for country's critical infrastructure systems
Vulnerability assessment for country's critical infrastructure systems The Australian government is to spend more than 8 million dollars on a project that will identify and fix… https://www.virusbulletin.com/blog/2004/11/australia-protect-critical-computer-systems/

Lycos turns hippy on spam

'Make love not spam'
'Make love not spam' Lycos Europe has come up with an interesting new way for its users to feel they are getting their own back on spammers. Lycos is encouraging its users to… https://www.virusbulletin.com/blog/2004/11/lycos-turns-hippy-spam/

Spam survey

Do women hate spam more than men? Are humans better at identifying spam than computers? Make your contribution to (anti-)spam research...
Do women hate spam more than men? Are humans better at identifying spam than computers? Make your contribution to (anti-)spam research... John Graham-Cumming, author of POPFile… https://www.virusbulletin.com/blog/2004/11/spam-survey/

Standardised malware naming for the new year

An end to the virus-naming problem?
An end to the virus-naming problem? A new initiative that aims to standardise malware naming may be in operation as early as January 2005. The US Department of Homeland… https://www.virusbulletin.com/blog/2004/11/standardised-malware-naming-new-year/

Most spammed

Think you've got it bad? Spare a thought for Bill.
Think you've got it bad? Spare a thought for Bill. Microsoft Chairman Bill Gates is the world's most spammed email recipient. The (let's face it, not entirely surprising) fact… https://www.virusbulletin.com/blog/2004/11/most-spammed/

29A virus writer sentenced

Member of notorious virus-writing group found guilty.
Member of notorious virus-writing group found guilty. A Russian virus writer has been found guilty of creating viruses and fined the somewhat paltry sum of 3,000 roubles. Eugene… https://www.virusbulletin.com/blog/2004/11/29a-virus-writer-sentenced/

Latest VGrep

The latest version of the virus name lookup tool - VGrep, is now available.
The latest version of the virus name lookup tool - VGrep, is now available. VGrep is a system produced in an attempt to clear up some of the confusion surrounding the naming of… https://www.virusbulletin.com/blog/2004/11/latest-vgrep/

November

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2004/11/

Spam becomes a collectors' item

British man sets up his own Museum of Spam.
British man sets up his own Museum of Spam. Just in case you hadn't already seen enough spam in your inbox, or in case your spam filter is so efficient that you find yourself… https://www.virusbulletin.com/blog/2004/10/spam-becomes-collectors-item/

November issue released

The Virus Bulletin November issue is on its way.
The Virus Bulletin November issue is on its way. It's that time of the month again... If you are a subscriber to Virus Bulletin, you should be receiving your November issue… https://www.virusbulletin.com/blog/2004/10/november-issue-released/

Dial a detection

Guidance issued on how to deal with rogue Internet diallers ('porn diallers')
Guidance issued on how to deal with rogue Internet diallers ('porn diallers') UK telecoms watchdog the Independent Committee for the Supervision of Standards of Telephone… https://www.virusbulletin.com/blog/2004/10/dial-detection/

Phishy goings on

Fewer than five zombie network operators are responsible for all Internet phishing attacks worldwide according to CipherTrust...
Fewer than five zombie network operators are responsible for all Internet phishing attacks worldwide according to CipherTrust... According to Commtouch Software the US, UK,… https://www.virusbulletin.com/blog/2004/10/phishy-goings/

Storms put the wind up spammers

Significant decline in the volume of spam messages seen in the days immediately following the three recent hurricanes.
Significant decline in the volume of spam messages seen in the days immediately following the three recent hurricanes. Email security firm FrontBridge Technologies Inc. reported… https://www.virusbulletin.com/blog/2004/10/storms-put-wind-spammers/

Spam gets the sniffles

Spammers seize the opportunity to cash in on the US flu vaccine problem.
Spammers seize the opportunity to cash in on the US flu vaccine problem. Not only has the shortage of flu vaccine been something of a political hot potato in the run up to the US… https://www.virusbulletin.com/blog/2004/10/spam-gets-sniffles/

Sender ID specification revised

Microsoft has another stab at getting its email authentication protocol approved.
Microsoft has another stab at getting its email authentication protocol approved. Microsoft has revised its Sender ID email authentication protocol and resubmitted it to the… https://www.virusbulletin.com/blog/2004/10/sender-id-specification-revised/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.