VB Blog

Malicious CCleaner update points to a major weakness in our infrastructure

Posted by   Martijn Grooten on   Sep 18, 2017

Researchers from Cisco Talos have found that a recent version of the widely used CCleaner tool installed malware on the machine.

Read more  

Despite the profitability of ransomware there is a good reason why mining malware is thriving

Posted by   Virus Bulletin on   Sep 15, 2017

Though ransomware is far more profitable than using a compromised PC to mine bitcoins, the global distribution of malware means that there are many botnets for which mining is the most efficient way to extract money out of a PC.

Read more  

VB2017 preview: Crypton - exposing malware's deepest secrets

Posted by   Martijn Grooten on   Sep 14, 2017

We preview the VB2017 paper by Julia Karpin and Anna Dorfman (F5 networks), in which they present a tool to decrypt encrypted parts of malware.

Read more  

VB2017 preview: Hacktivism and website defacement: motivations, capabilities and potential threats

Posted by   Martijn Grooten on   Sep 13, 2017

We preview the VB2017 paper by Marco Romagna and Niek Jan van den Hout (The Hague University of Applied Sciences), in which they thoroughly analyse the motivations and modus operandy of hacktivists.

Read more  

Three questions to ask about security product bypasses

Posted by   Martijn Grooten on   Sep 13, 2017

Proof-of-concepts for bypasses of security products always sound scary, but how seriously should we take them? VB Editor Martijn Grooten lists three questions one should ask about any such bypass to determine how serious a threat it represents.

Read more  

VB2017: WHOIS and EICAR Small Talks added

Posted by   Martijn Grooten on   Sep 12, 2017

Today, we announce two more 'Small Talks' for the VB2017 programme. In one of them, Neil Schwarzman will discuss the consequences of the GDPR for WHOIS and abuse research, while the other will be hosted by three members of EICAR, who will discuss its work on a trustworthiness strategy and minimum standard.

Read more  

VB2017: nine last-minute papers announced

Posted by   Martijn Grooten on   Sep 11, 2017

From attacks on Ukraine's power grid to web shells, and from car hacking to ransomware: we announce the first nine 'last-minute' papers on the VB2017 programme.

Read more  

Patching is important even when it only shows the maturity of your security process

Posted by   Martijn Grooten on   Sep 5, 2017

A lot of vulnerabilities that are discovered are never exploited in the wild. It is still important to patch them though.

Read more  

Massive data breach confirms what you already knew: you are getting spam

Posted by   Martijn Grooten on   Sep 4, 2017

A security researcher found more than 700 million email addresses stored on a server used by a spam botnet, which gives us some insight into what the email lists used by spammers look like.

Read more  

VB2017 preview: State of cybersecurity in Africa: Kenya

Posted by   Martijn Grooten on   Sep 4, 2017

We preview the VB2017 presentation by Tyrus Kamau (Euclid Security), who will talk about the state of cybersecurity in Africa, with a particular focus on his home country, Kenya.

Read more  

Search blog

Spammer's free speech defence fails

Appeal against conviction turned down.
Appeal against conviction turned down. US spammer Jeremy Jaynes, the first spammer convicted in a felony case, has had his last appeal against the conviction, brought on freedom of… https://www.virusbulletin.com/blog/2008/03/spammer-s-free-speech-defence-fails/

Cybercriminals charged in New Zealand, Korea

Law closes in on alleged botnet master and rogue anti-spyware maker.
Law closes in on alleged botnet master and rogue anti-spyware maker. Police in New Zealand have charged an 18-year-old in connection with a botnet he is suspected of building and… https://www.virusbulletin.com/blog/2008/03/cybercriminals-charged-new-zealand-korea/

'Search engines should do more to fight malware'

85% of users think that search engines should be doing more.
85% of users think that search engines should be doing more. According to a recent poll, 85% of visitors to the VB website think that search engines should be doing more to fight… https://www.virusbulletin.com/blog/2008/03/search-engines-should-do-more-fight-malware/

Showy malware pushes rogue anti-malware product

MonaRonaDona trojan leads searchers to remover scam.
MonaRonaDona trojan leads searchers to remover scam. An infection which advertises its presence using the name 'MonaRonaDona' is leading victims to search for a cure - and many of… https://www.virusbulletin.com/blog/2008/03/showy-malware-pushes-rogue-anti-malware-product/

March issue of VB published

The March issue of Virus Bulletin is now available for subscribers to download.
The March issue of Virus Bulletin is now available for subscribers to download. The March 2008 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2008/03/march-issue-vb-published/

March

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2008/03/

Gmail CAPTCHA cracked

Twenty per cent success rate sufficient to create thousands of spam accounts.
Twenty per cent success rate sufficient to create thousands of spam accounts.Gmail has become the latest free webmail service to have its CAPTCHAs cracked by spammers. Following… https://www.virusbulletin.com/blog/2008/02/gmail-captcha-cracked/

Trend Micro buys email encryption firm

UK company taken over by security giant.
UK company taken over by security giant. Global security superpower Trend Micro has invested in a small email encryption firm based in Bristol, UK. The company, Identum, emerged… https://www.virusbulletin.com/blog/2008/02/trend-micro-buys-email-encryption-firm/

Vista SP1 clashing with AV products

Service Pack causing issues for several security suites.
Service Pack causing issues for several security suites.Microsoft has released details of several software products that are known to have problems running in conjunction with… https://www.virusbulletin.com/blog/2008/02/vista-sp1-clashing-av-products/

Malware going local

Report sees trend toward greater localisation of threats.
Report sees trend toward greater localisation of threats.McAfee's latest Sage report focuses on increased localisation in malware, with spam, phishing and malcode all showing great… https://www.virusbulletin.com/blog/2008/02/malware-going-local/

Botnet-herding team arrested in Quebec

Gang held for managing million-machine zombie net.
Gang held for managing million-machine zombie net. Canadian police have announced the arrests of up to 17 people in Quebec, in connection with a major botnet operation thought to… https://www.virusbulletin.com/blog/2008/02/botnet-herding-team-arrested-quebec/

ITV site carried scareware ads

Rogue security product pushed by ads on several UK TV sites.
Rogue security product pushed by ads on several UK TV sites. Several UK television-related websites, including those of major broadcaster ITV and listings guide Radio Times, have… https://www.virusbulletin.com/blog/2008/02/itv-site-carried-scareware-ads/

Habbo trojan steals passwords

Extension decorates your room... with malware.
Extension decorates your room... with malware. A trojan has been discovered that masquerades as an extension to social networking site Habbo, formerly known as Habbo Hotel. The… https://www.virusbulletin.com/blog/2008/02/habbo-trojan-steals-passwords/

Vish implanted in phishing warning

Doctored bank alert includes phony phone number.
Doctored bank alert includes phony phone number. A spammed-out email has been spotted posing as a phishing warning from US credit union Kessler Federal, with some very sensible… https://www.virusbulletin.com/blog/2008/02/vish-implanted-phishing-warning/

VB reveals new website design

Glossary, comments and mobile website among new additions.
Glossary, comments and mobile website among new additions. Regular visitors to VB may have noticed that the site has a fresh new look as well as some changes and additions to its… https://www.virusbulletin.com/blog/2008/02/vb-reveals-new-website-design/

Japanese super-spammer arrested

Tokyo man sent 2.2 billion emails.
Tokyo man sent 2.2 billion emails. A 25-year-old man was arrested in Tokyo last week, suspected of sending 2.2 billion spam emails. Yukio Shiina was picked up by police on Friday,… https://www.virusbulletin.com/blog/2008/02/japanese-super-spammer-arrested/

VB100 test on Windows Vista SP1 announced

Products to be tested on new update to Vista platform.
Products to be tested on new update to Vista platform. VB has issued a call for submissions for the latest VB100 comparative review, which will test the performance of products… https://www.virusbulletin.com/blog/2008/02/test-windows-vista-sp1-announced/

Microsoft research revives 'friendly worm' ideas

Malware techniques proposed as update-spreading method.
Malware techniques proposed as update-spreading method. A group of Microsoft researchers have put forward proposals to use worm techniques to spread patches and updates across… https://www.virusbulletin.com/blog/2008/02/microsoft-research-revives-friendly-worm-ideas/

Software and OS developers should take responsibility for security

While 51% of users say computer security should be the responsibility of the user, nearly a third of users feel it is up to software and OS developers.
While 51% of users say computer security should be the responsibility of the user, nearly a third of users feel it is up to software and OS developers. According to a recent poll,… https://www.virusbulletin.com/blog/2008/02/software-and-os-developers-should-take-responsibility-security/

Phishers phishing phishers' phishes

Scam software secretly sending stolen data to creators.
Scam software secretly sending stolen data to creators.Phishing researchers have uncovered code buried in phishing software kits, sold by developers to less technically aware… https://www.virusbulletin.com/blog/2008/02/phishers-phishing-phishers-phishes/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.