VB Blog

WordPress users urged to manually update to fix bug that prevents automatic updating

Posted by   Martijn Grooten on   Feb 8, 2018

Users of the popular WordPress content management system are urged to manually update their installation to version 4.9.4, as a bug in the previous version broke the ability to automatically install updates.

Read more  

New paper: A review of the evolution of Andromeda over the years

Posted by   Martijn Grooten on   Feb 7, 2018

The Andromeda botnet (aka Gamarue or Wauchos) has plagued Internet users for more than half a decade but, following a takedown effort and the arrest of the suspected botnet owner in December 2017, it is likely we have seen the end of it. In a new paper by Fortinet researchers Bahare Sabouri and He Xu, we look back at the evolution of Andromeda from version 2.06 to 2.10 and demonstrate both how it improved its loader to evade automatic analysis/detection and how the payload varied among the different versions.

Read more  

There is no evidence in-the-wild malware is using Meltdown or Spectre

Posted by   Martijn Grooten on   Feb 2, 2018

Reports of malware using the Meltdown or Spectre attacks are likely based on proof-of-concept code rather than files written for a malicious purpose.

Read more  

Throwback Thursday: Malware taking a bit(coin) more than we bargained for

Posted by   Martijn Grooten on   Feb 1, 2018

This Throwback Thursday, we republish the VB2012 paper by Microsoft researcher Amir Fouda, one of the earliest papers to look at malware targeting Bitcoin.

Read more  

First time speaker? Don't be afraid of submitting to the VB2018 CFP

Posted by   Martijn Grooten on   Jan 31, 2018

We especially encourage those less experienced in speaking in public to submit to the call for papers for VB2018, where we aim to provide a friendly and welcoming environment in which people can both present their own research and learn from what others have been working on.

Read more  

VB2017 paper: VirusTotal tips, tricks and myths

Posted by   Martijn Grooten on   Jan 25, 2018

At VB2017 in Madrid, security researcher Randy Abrams presented an overview of the VirusTotal service and then went on to bust several of the persistent myths that surround it. Today we publish both Randy's paper and the recording of his presentation.

Read more  

Healthcare CERTs highlight the need for security guidance for specific sectors

Posted by   Martijn Grooten on   Jan 24, 2018

A new computer emergency response team has been launched in the Netherlands to provide guidance specifically tailored to the healthcare sector. Martijn Grooten welcomes the development.

Read more  

VB2018 call for papers now open!

Posted by   Martijn Grooten on   Jan 23, 2018

Have you analysed a new online threat? Do you know a new way to defend against such threats? Are you tasked with securing systems and fending off attacks? The call for papers for VB2018 is now open and we want to hear from you!

Read more  

Book review: Serious Cryptography

Posted by   Martijn Grooten on   Jan 22, 2018

VB Editor Martijn Grooten recommends Jean-Philippe Aumasson's 'Serious Cryptography' as a very solid but practically focused introduction to cryptography.

Read more  

Necurs pump-and-dump spam campaign pushes obscure cryptocurrency

Posted by   Martijn Grooten on   Jan 16, 2018

A Necurs pump-and-dump spam campaign pushing the lesser known Swisscoin botnet is mostly background noise for the Internet.

Read more  

Search blog

Microsoft to replace OneCare with free AV product

OneCare retirement announced, new product will be lighter on systems and pockets.
OneCare retirement announced, new product will be lighter on systems and pockets.Microsoft has announced plans to put an end to its home-user security product Live OneCare, and to… https://www.virusbulletin.com/blog/2008/11/microsoft-replace-onecare-free-av-product/

ICANN pulls plug on registrar favoured by cyber crooks

After a week's stay of execution, ICANN decides EstDomains will be terminated.
After a week's stay of execution, ICANN decides EstDomains will be terminated. ICANN, the organization responsible for managing the assignment of domain names and IP addresses, has… https://www.virusbulletin.com/blog/2008/11/icann-pulls-plug-registrar-favoured-cyber-crooks/

Disconnection of dubious provider sees spam levels plummet

Web-hosting firm believed to be responsible for 75% of spam.
Web-hosting firm believed to be responsible for 75% of spam. Anti-spam researchers across the world reported a significant drop in the volume of spam seen after web-hosting firm… https://www.virusbulletin.com/blog/2008/11/disconnection-dubious-provider-sees-spam-levels-plummet/

Two updates in Microsoft's November's patch release

Just two updates released by Microsoft this month: one rated critical, one important.
Just two updates released by Microsoft this month: one rated critical, one important.Microsoft has issued two updates in the November round of its monthly patch release cycle, one… https://www.virusbulletin.com/blog/2008/11/two-updates-microsoft-s-november-s-patch-release/

Riders on a Storm

Researchers hijack botnet - and find spam success rates lower than previously believed.
Researchers hijack botnet - and find spam success rates lower than previously believed. Less than 1 in 12 million spam emails sent through the infamous Storm botnet led to a… https://www.virusbulletin.com/blog/2008/11/riders-storm/

November issue of VB published

The November issue of Virus Bulletin is now available for subscribers to download.
The November issue of Virus Bulletin is now available for subscribers to download. The November 2008 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2008/11/november-issue-vb-published/

November

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2008/11/

Microsoft issues emergency patch

Out-of-cycle update fixes serious, wormable flaw.
Out-of-cycle update fixes serious, wormable flaw.Microsoft has issued an emergency update to cover a serious vulnerability in the Windows Server service, breaking its usual monthly… https://www.virusbulletin.com/blog/2008/10/microsoft-issues-emergency-patch/

Sarkozy bank account raided by cybercrooks

Hackers steal from French president - phish suspected.
Hackers steal from French president - phish suspected. French president Nicolas Sarkozy has had his funds stolen from his bank account, apparently after a phishing email tricked… https://www.virusbulletin.com/blog/2008/10/sarkozy-bank-account-raided-cybercrooks/

Latest VB100 announced

Products for 64-bit Vista to be put through paces.
Products for 64-bit Vista to be put through paces. VB has announced the latest round of VB100 testing, with products running on the 64-bit version of Microsoft's Windows Vista to… https://www.virusbulletin.com/blog/2008/10/latest-announced/

US ISPs urged to snoop on traffic

NY Attorny General promotes deep packet inspection to AOL.
NY Attorny General promotes deep packet inspection to AOL. ISPs in the US are coming under increasing pressure to impose deep probing of all their customers' traffic, with the… https://www.virusbulletin.com/blog/2008/10/us-isps-urged-snoop-traffic/

McAfee false positive flags Vista component

Innocent file labelled trojan.
Innocent file labelled trojan.McAfee has updated one of its detections after a faulty update led to an integral component of the Windows Vista operating system being falsely… https://www.virusbulletin.com/blog/2008/10/mcafee-false-positive-flags-vista-component/

Security dominates software sales charts

AV, IS and anti-spyware products represent nine of last month's top 20 bestsellers.
AV, IS and anti-spyware products represent nine of last month's top 20 bestsellers. Sales of security products remain very strong despite economic conditions, according to market… https://www.virusbulletin.com/blog/2008/10/security-dominates-software-sales-charts/

Ham disguised as spam

Webshop makes mass-mailing look like phishing scam.
Webshop makes mass-mailing look like phishing scam. An email addressed to 'Dear customer', in which a user is asked to check their account details, using a link that does not lead… https://www.virusbulletin.com/blog/2008/10/ham-disguised-spam/

Vulnerability test raises hackles

Secunia suite trial slates lack of PoC detection, but test methods called into question.
Secunia suite trial slates lack of PoC detection, but test methods called into question. Vulnerability specialist Secunia published the results of a trial of internet security… https://www.virusbulletin.com/blog/2008/10/vulnerability-test-raises-hackles/

Researchers urge anti-phishing companies to share data

Estimate over $300 million lost annually because data is not shared.
Estimate over $300 million lost annually because data is not shared. Researchers have revealed malicious websites are often active for longer than they ought to be due to a lack of… https://www.virusbulletin.com/blog/2008/10/researchers-urge-anti-phishing-companies-share-data/

VB2008 photos online

VB delegates at work, rest and play in Ottawa.
VB delegates at work, rest and play in Ottawa. A selection of photographs from the VB2008 conference in Ottawa is now available to browse online. The photographs can be searched by… https://www.virusbulletin.com/blog/2008/10/photos-online/

Four critical updates this Patch Tuesday

11 updates to be issued by Microsoft in October's monthly patch release: 4 critical.
11 updates to be issued by Microsoft in October's monthly patch release: 4 critical.Microsoft has prepared a total of 11 updates for the October round of its monthly patch release… https://www.virusbulletin.com/blog/2008/10/four-critical-updates-patch-tuesday/

MessageLabs acquired by Symantec

Acquisition deal valued at $695m.
Acquisition deal valued at $695m. Security industry heavyweight Symantec has announced a definitive agreement to acquire software-as-a-service security specialist MessageLabs.… https://www.virusbulletin.com/blog/2008/10/messagelabs-acquired-symantec/

October

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2008/10/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.