VB Blog

VB2018 presentation: Levelling up: why sharing threat intelligence makes you more competitive

Posted by   Helen Martin on   Mar 1, 2019

In a presentation at VB2018, Michael Daniel, President and CEO of the Cyber Threat Alliance, outlined exactly how threat sharing strengthens a company's competitive advantage. Today we release the recording of his presentation.

Read more  

The malspam security products miss: Emotet, Ursnif, and a spammer's blunder

Posted by   Martijn Grooten on   Feb 25, 2019

The set-up of the VBSpam test lab gives us a unique insight into the kinds of emails that are more likely to bypass email filters. This week we look at the malspam that was missed: a very international email with a link serving Emotet, an Italian Ursnif campaign with a password-protected ZIP and an email to which a clumsy spammer had attached a list of email addresses rather than a payload.

Read more  

VB2018 paper: The modality of mortality in domain names

Posted by   Martijn Grooten on   Feb 22, 2019

Domains play a crucial role in most cyber attacks, from the very advanced to the very mundane. Today, we publish a VB2018 paper by Paul Vixie (Farsight Security) who undertook the first systematic study into the lifetimes of newly registered domains.

Read more  

VB2018 paper: Analysing compiled binaries using logic

Posted by   Martijn Grooten on   Feb 20, 2019

Constraint programming is a lesser-known technique that is becoming increasingly popular among malware analysts. In a paper presented at VB2018 Thaís Moreira Hamasaki presented an overview of the technique and explained how it can be applied to the analysis of (potentially) malicious binaries. Today, we publish both Thaís' paper and the video of her presentation.

Read more  

Virus Bulletin encourages experienced speakers and newcomers alike to submit proposals for VB2019

Posted by   Martijn Grooten on   Feb 19, 2019

With a little less than a month before the deadline of the call for papers for VB2019, Virus Bulletin encourages submissions from experienced speakers and newcomers alike.

Read more  

VB2018 paper: Internet balkanization: why are we raising borders online?

Posted by   Helen Martin on   Feb 13, 2019

At VB2018 in Montreal, Ixia researcher Stefan Tanase presented a thought-provoking paper on the current state of the Internet and the worrying tendency towards raising borders and restricting the flow of information. Today we publish both his paper and the recording of his presentation.

Read more  

The malspam security products miss: banking and email phishing, Emotet and Bushaloader

Posted by   Martijn Grooten on   Feb 11, 2019

The set-up of the VBSpam test lab gives us a unique insight into the kinds of emails that are more likely to bypass email filters. This week we look at the malspam that was missed: banking and email phishing, Emotet and Bushaloader.

Read more  

VB2018 paper: Where have all the good hires gone?

Posted by   Helen Martin on   Feb 8, 2019

The cybersecurity skills gap has been described as one of the biggest challenges facing IT leaders today. At VB2018 in Montreal, ESET's Lysa Myers outlined some of the things the industry can do to help address the problem. Today we publish Lysa's paper and the recording of her presentation.

Read more  

Preview: Nullcon 2019

Posted by   Martijn Grooten on   Feb 5, 2019

We look forward the Nullcon 2019 conference in Goa, India, at which VB Editor Martijn Grooten will give a talk on the state of malware.

Read more  

From Amazon to Emotet: a look at those phishing and malware emails that bypassed email security products

Posted by   Martijn Grooten on   Feb 3, 2019

We see a lot of spam in the VBSpam test lab, and we also see how well such emails are being blocked by email security products. Recently some of the emails that bypassed security products included a broken Amazon phishing campaign, a large fake UPS campaign and malicious emails carrying Emotet and Lokibot.

Read more  

Search blog

Congressional attack on inboxes

US Congressional representatives send bulk email
US Congressional representatives send bulk email While congratulating themselves for (supposedly) stemming the flow of spam with the passage of the CAN-SPAM anti-spam… https://www.virusbulletin.com/blog/2004/01/congressional-attack-inboxes/

MyDoom, YourDoom, OurDoom

SCO offers a bounty for the arrest of the MyDoom author, Bruce Perens offers a conspiracy theory...
SCO offers a bounty for the arrest of the MyDoom author, Bruce Perens offers a conspiracy theory... SCO is offering a reward for information leading to the arrest of the author… https://www.virusbulletin.com/blog/2004/01/mydoom-yourdoom-ourdoom/

Divine intervention

AV on a spiritual level
AV on a spiritual level We all know how quickly time flies when we're having fun, or when there's a deadline looming, but a recent news report on the Asian news website Channel… https://www.virusbulletin.com/blog/2004/01/divine-intervention/

Waiting, reflecting and removing

Microsoft reports success of Blaster removal tool
Microsoft reports success of Blaster removal tool While young Romanian virus author Dan Dumitru Ciobanu awaited trial by a Romanian court last month for releasing a variant of… https://www.virusbulletin.com/blog/2004/01/waiting-reflecting-and-removing/

News summary...

Blaster (variant) author charged, AhnLab warns against complacency, India launches CERT-In, more on monoculture, and what's new in the spam world...
Blaster (variant) author charged, AhnLab warns against complacency, India launches CERT-In, more on monoculture, and what's new in the spam world... In much the same way that the… https://www.virusbulletin.com/blog/2004/01/news-summary/

Email coaching for marketers

DMA releases quick-glance reference guide for email marketers.
DMA releases quick-glance reference guide for email marketers. The Direct Marketing Association (DMA) has released a quick-glance reference guide for marketers entitled 'The CAN… https://www.virusbulletin.com/blog/2004/01/email-coaching-marketers/

Ahnlab partners with Sina.com

Ahnlab gets major ASP deal in China.
Ahnlab gets major ASP deal in China. Ahnlab has acquired a major stepping-stone into the Chinese domestic market, according to an article published by the Korea Herald, by… https://www.virusbulletin.com/blog/2004/01/ahnlab-partners-sina-com/

Security-conscious processors

AMD and Intel prep technology to prevent buffer overflows at the hardware level.
AMD and Intel prep technology to prevent buffer overflows at the hardware level. IT news site Silicon.com has published an article about hardware security in CPUs to prevent… https://www.virusbulletin.com/blog/2004/01/security-conscious-processors/

Weekend round-up

Narrowband blues, 2004 predictions, VeriSign scuttles Symantec, Dloader/Xombie
Narrowband blues, 2004 predictions, VeriSign scuttles Symantec, Dloader/Xombie It's been a busy few days as 2004 starts to get into full swing. VB has a roundup of the weekend's… https://www.virusbulletin.com/blog/2004/01/weekend-round/

January

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2004/01/

2004

Latest news from the anti-virus industry provided by independent anti-virus advisors, Virus Bulletin
NewsJanuary issue released The Virus Bulletin January 2005 issue is on its way. 23 December 2004Latest VGrep The latest version of the virus name lookup tool - VGrep, is now… https://www.virusbulletin.com/blog/2004/

US and UK spam legislation in place

Anti-spam legislation in place.
Anti-spam legislation in place. While the 'CAN-SPAM Act' is expected to have been signed into US law by 1 January 2004, December 2003 saw the introduction of anti-spam… https://www.virusbulletin.com/blog/2003/12/us-and-uk-spam-legislation-place/

Number crunching

Calculating the average cost of a virus attack - estimates or guesstimates?
Calculating the average cost of a virus attack - estimates or guesstimates? This month has seen a flurry of the traditional end-of-year predictions for the security challenges in… https://www.virusbulletin.com/blog/2003/12/number-crunching/

SAS - the SysAsmin Service?

Computer security experts prepare to become special constables.
Computer security experts prepare to become special constables. A set of proposals for tackling computer crime has been published by UK Parliamentary lobby group EURIM and the… https://www.virusbulletin.com/blog/2003/12/sas-sysasmin-service/

SpamCop snapped up

IronPort Systems to purchase SpamCop
IronPort Systems to purchase SpamCop According to the IDG News Service, email security hardware manufacturer IronPort Systems Inc. is set to announce its purchase of anti-spam… https://www.virusbulletin.com/blog/2003/12/spamcop-snapped/

Seasonal spamming

Increase in spam in lead up to holiday season.
Increase in spam in lead up to holiday season. A recent study carried out by Corvigo, suggests that the volume of spam in our inboxes showed a marked increase over the lead up to… https://www.virusbulletin.com/blog/2003/12/seasonal-spamming/

December

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2003/12/

VB2004 call for papers

Virus Bulletin calls for all speakers papers.
Virus Bulletin calls for all speakers papers. full article Posted on 05 January 2004 by Virus Bulletin https://www.virusbulletin.com/blog/2003/11/call-papers/

The menace within

Is BitDefender really staffed by Romanian vampire hackers...?
Is BitDefender really staffed by Romanian vampire hackers...? A recent report by the Associated Press claims that 'computer-savvy Romanians are fast emerging as a bold menace in… https://www.virusbulletin.com/blog/2003/11/menace-within/

Unanimous vote for CAN-SPAM Act

US Senate approves federal anti-spam legislation.
US Senate approves federal anti-spam legislation. The US Senate has approved the first federal anti-spam legislation. The 'CAN-SPAM Act' was approved by Senate in a unanimous… https://www.virusbulletin.com/blog/2003/11/unanimous-vote-can-spam-act/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.