VB Blog

Compromised site serves Nuclear exploit kit together with fake BSOD

Posted by   Virus Bulletin on   Jul 31, 2015

Support scammers not lying about a malware infection for a change.

Read more  

Throwback Thursday: Riotous Assembly

Posted by   Virus Bulletin on   Jul 30, 2015

This Throwback Thursday, we turn the clock back to January 1994, shortly after Cyber Riot had emerged as the first virus capable of infecting the Windows kernel.

Read more  

Stagefright vulnerability leaves 950 million Android devices vulnerable to remote code execution

Posted by   Virus Bulletin on   Jul 28, 2015

The operating system has been patched, but it is unclear whether users will receive those patches.

Read more  

Throwback Thursday: Sizewell B: Fact or Fiction?

Posted by   Virus Bulletin on   Jul 23, 2015

This Throwback Thursday, we turn the clock back to 1993, when VB asked the key question: could a virus compromise safety at one of Britain's nuclear power plants?

Read more  

Call for last-minute papers for VB2015 announced

Posted by   Virus Bulletin on   Jul 21, 2015

Ten speaking slots waiting to be filled with presentations on 'hot' security topics.

Read more  

'NOMORE' attack makes RC4 a little weaker again

Posted by   Virus Bulletin on   Jul 20, 2015

No good reason to continue using the stream cipher, yet attacks remain impractical.

Read more  

Spam levels fall below 50% for the first time in 12 years

Posted by   Virus Bulletin on   Jul 20, 2015

Decline not necessarily good news for spam filters.

Read more  

Throwback Thursday: What You Pay For...

Posted by   Virus Bulletin on   Jul 16, 2015

This Throwback Thursday, we turn the clock back to 1996, when VB looked at what was available to protect your computer free of charge.

Read more  

Paper: Dridex in the Wild

Posted by   Virus Bulletin on   Jul 13, 2015

Meng Su explains how Dridex works and how it communicates with its C&C server.

Read more  

Those doing bad things deserve privacy too

Posted by   Virus Bulletin on   Jul 10, 2015

Hacking Team leakers should have taken a leaf out of Snowden's book.

Read more  

Search blog

Throwback Thursday: KAOS on the Superhighway?

This Throwback Thursday, we turn the clock back to 1994, when KAOS4 was discovered on the Internet.
This Throwback Thursday, we turn the clock back to 1994, when KAOS4 was discovered on the Internet. A new virus has been found on the Internet — today, this is an unfortunate fact… https://www.virusbulletin.com/blog/2015/06/throwback-thursday-kaos-superhighway/

Paper: Using .NET GUIDs to help hunt for malware

Tool to extract identifiers incorporated into VirusTotal.
Tool to extract identifiers incorporated into VirusTotal. The large number of new malware samples found each day hasn't made malware analysis an easier task, and researchers could… https://www.virusbulletin.com/blog/2015/06/paper-using-net-guids-help-hunt-malware/

Steganoprague: a VB2015 competition & puzzle

Use your obfuscation and deobfuscation skills to win a prize during the VB2015 conference!
Use your obfuscation and deobfuscation skills to win a prize during the VB2015 conference! "It is time for defenders to go on the offence," wrote Andreas Lindh in Virus Bulletin… https://www.virusbulletin.com/blog/2015/06/steganoprague-competition-amp-puzzle/

NSA, GCHQ found to target anti-virus products

Agencies looked for vulnerabilities to exploit and for submitted malware samples.
Agencies looked for vulnerabilities to exploit and for submitted malware samples. New documents from NSA whistle-blower Edward Snowden have revealed the agency and its British… https://www.virusbulletin.com/blog/2015/06/nsa-gchq-found-target-anti-virus-products/

Paper: Beta exploit pack: one more piece of crimeware for the infection road!

Exploit kit currently being tested focuses primarily on Flash Player exploits.
Exploit kit currently being tested focuses primarily on Flash Player exploits. Nuclear, Angler, Magnitude and Rig. Security researchers know we're talking about exploit kits (or… https://www.virusbulletin.com/blog/2015/06/paper-beta-exploit-pack-one-more-piece-crimeware-infection-road/

Throwback Thursday: Macro Viruses & The Little Virus That Could...

This Throwback Thursday, we turn the clock back to 1999, when Melissa was causing havoc across the globe and VB presented a series of articles detailing all you ever wanted to know about macro viruses but were afraid to ask.
This Throwback Thursday, we turn the clock back to 1999, when Melissa was causing havoc across the globe and VB presented a series of articles detailing all you ever wanted to know… https://www.virusbulletin.com/blog/2015/06/throwback-thursday-macro-viruses-amp-little-virus-could/

Virus Bulletin announces 'Small Talks' for VB2015

Smaller, more informal format ideal for discussion and debate.
Smaller, more informal format ideal for discussion and debate. When, a few months ago, we announced the programme for VB2015, we promised 'a number of added extras'. We have… https://www.virusbulletin.com/blog/2015/06/announces-small-talks/

Vawtrak uses Tor2Web to connect to Tor hidden C&C servers

Option hides the servers, without having to include a Tor client in the malware.
Option hides the servers, without having to include a Tor client in the malware. The authors of the Vawtrak trojan (also known as Neverquest) have moved some of its C&C servers to… https://www.virusbulletin.com/blog/2015/06/vawtrak-uses-tor2web-connect-tor-hidden-c-amp-c-servers/

Throwback Thursday: Virus Writers

This Throwback Thursday, we bring you a series of articles from the archives that looked at virus writers, asking 'who are they?', 'why do they do it?', and other pertinent questions.
This Throwback Thursday, we bring you a series of articles from the archives that looked at virus writers, asking 'who are they?', 'why do they do it?', and other pertinent… https://www.virusbulletin.com/blog/2015/06/throwback-thursday-virus-writers/

Duqu 2.0 found to target security company

Advanced malware also targeted venues linked to Iranian nuclear negotiations.
Advanced malware also targeted venues linked to Iranian nuclear negotiations. There are some security stories you couldn't make up. The authors of an advanced malware tool have… https://www.virusbulletin.com/blog/2015/06/duqu-2-0-found-target-security-company/

June

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2015/06/

London calling!

Infosecurity Europe, BSides London and the Security Bloggers Meetup.
Infosecurity Europe, BSides London and the Security Bloggers Meetup. June is the new April, at least for the security industry, as its traditional get-together in London… https://www.virusbulletin.com/blog/2015/05/london-calling/

Paper: On the beat

Kevin Williams looks back at UK law enforcement successes at combating cybercrime.
Kevin Williams looks back at UK law enforcement successes at combating cybercrime. In a recent Throwback Thursday article, we looked back at the sentencing of self-confessed virus… https://www.virusbulletin.com/blog/2015/05/paper-beat/

Throwback Thursday: Research and Other Hobbies

This Throwback Thursday we reflect on the life of one of industry's greats, who sadly passed away this week: Prof. Klaus Brunnstein.
This Throwback Thursday we reflect on the life of one of industry's greats, who sadly passed away this week: Prof. Klaus Brunnstein. Professor Klaus Brunnstein was one of the… https://www.virusbulletin.com/blog/2015/05/throwback-thursday-research-and-other-hobbies/

Weak keys and prime reuse make Diffie-Hellman implementations vulnerable

'Logjam' attack possibly used by the NSA to decrypt VPN traffic.
'Logjam' attack possibly used by the NSA to decrypt VPN traffic. A group of researchers have discovered a number of vulnerabilities in the way the Diffie-Hellman key exchange… https://www.virusbulletin.com/blog/2015/05/weak-keys-and-prime-reuse-make-diffie-hellman-implementations-vulnerable/

Virus Bulletin announces student tickets for VB2015

87% discount for students and the option to give a lightning talk.
87% discount for students and the option to give a lightning talk. A few weeks ago, we opened registration for VB2015, which will take place in Prague from 30 September to 2… https://www.virusbulletin.com/blog/2015/05/announces-student-tickets/

Throwback Thursday: Double Trouble / The Perfect Couple

Once again this Throwback Thursday, we bring you not one but two (related) pieces from the archives as VB heads back to the mid-90s when a new era of viruses was believed to be dawning.
Once again this Throwback Thursday, we bring you not one but two (related) pieces from the archives as VB heads back to the mid-90s when a new era of viruses was believed to be… https://www.virusbulletin.com/blog/2015/05/throwback-thursday-double-trouble-perfect-couple/

Book review: The Florentine Deception, by Carey Nachenberg

John Hawes reviews Carey Nachenberg's debut novel.
John Hawes reviews Carey Nachenberg's debut novel. There's a rather serious problem with fiction involving computers, and computer security in particular. It seems like any time a… https://www.virusbulletin.com/blog/2015/05/book-review-florentine-deception-carey-nachenberg/

Book review: Data and Goliath, by Bruce Schneier

Paul Baccas reviews Data and Goliath 'The Hidden Battles to Collect You Data and Control Your World', by Bruce Schneier.
Paul Baccas reviews Data and Goliath 'The Hidden Battles to Collect You Data and Control Your World', by Bruce Schneier. This book has been difficult to review. It has proved… https://www.virusbulletin.com/blog/2015/05/book-review-data-and-goliath-bruce-schneier/

Throwback Thursday: When Love came to Town

Once again this Throwback Thursday, we bring you not one but two (related) pieces from the archives as VB heads back to 2000 in the week of the 15th anniversary of the LoveLetter virus.
Once again this Throwback Thursday, we bring you not one but two (related) pieces from the archives as VB heads back to 2000 in the week of the 15th anniversary of the LoveLetter… https://www.virusbulletin.com/blog/2015/05/throwback-thursday-when-love-came-town/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.