VB Blog

A Christmas present for the security community

Posted by   Martijn Grooten on   Dec 24, 2016

As a Christmas present for the security community, we have uploaded most of the papers and videos from the VB2015 conference which took place in Prague almost 15 months ago. The Virus Bulletin crew wishes you all the best for 2017!

Read more  

Paper: Spreading techniques used by malware

Posted by   Martijn Grooten on   Dec 21, 2016

In a new paper published by Virus Bulletin, Acalvio researcher Abhishek Singh discusses some of the techniques used by malware to increase its impact by spreading further.

Read more  

VB2016 video: On the StrongPity waterhole attacks targeting Italian and Belgian encryption users

Posted by   Martijn Grooten on   Dec 20, 2016

At VB2016, Kaspersky Lab researcher Kurt Baumgartner delivered a presentation on the StrongPity watering hole attacks that targeted users of encryption technologies, and which were recently featured in a report by Microsoft. Today, we share the video of Kurt's presentation.

Read more  

Conference review: Botconf 2016

Posted by   Martijn Grooten on   Dec 20, 2016

Three members of the Virus Bulletin team attended the Botconf 2016 conference in Lyon, France last month, enjoying talks on subjects that ranged from state-sponsored attacks to exploit kits, and from banking trojans to cyber insurance.

Read more  

Throwback Thursday: Adjust Your Attitude!

Posted by   Helen Martin on   Dec 15, 2016

"Most of you reading this article have the technical skill but do you have the people skills?" In 2000, James Wolfe urged security experts to sell themselves and their services.

Read more  

VB2016 paper: Modern attacks on Russian financial institutions

Posted by   Martijn Grooten on   Dec 12, 2016

Today, we publish the VB2016 paper and presentation (recording) by ESET researchers Jean-Ian Boutin and Anton Cherepanov, in which they look at sophisticated attacks against Russian financial institutions.

Read more  

More on the Moose botnet at Botconf

Posted by   Martijn Grooten on   Dec 2, 2016

At Botconf 2016 this week, GoSecure researchers Masarah Paquet-Clouston and Olivier Bilodeau presented their research on the Moose botnet - something Olivier Bilodeau previously spoke about at VB2015.

Read more  

VB2016 paper: Defeating sandbox evasion: how to increase successful emulation rate in your virtualized environment

Posted by   Martijn Grooten on   Dec 2, 2016

Today, we publish the VB2016 paper and presentation (recording) by Check Point Software researchers Alexander Chailytko and Stanislav Skuratovich, which focuses on the techniques used by malware to detect virtual environments, and provides detailed technical descriptions of what can be done to defeat them.

Read more  

VB2016 paper: Mobile applications: a backdoor into the Internet of Things?

Posted by   Martijn Grooten on   Nov 29, 2016

While the Internet of Things blossoms with newly connected objects every day, the security and privacy of these objects is often overlooked, making the IoT a major security concern. Unfortunately, reverse-engineering so-called smart devices is not an easy task. In her VB2016 paper, Axelle Apvrille presented a novel way of analysing smart devices: by looking at the accompanying mobile app. Today, we publish both Axelle’s paper and the video recording of her VB2016 presentation.

Read more  

VB2016 paper: Wave your false flags! Deception tactics muddying attribution in targeted attacks

Posted by   Martijn Grooten on   Nov 21, 2016

Today, we publish the VB2016 paper and presentation (recording) by Kaspersky Lab researchers Juan Andrés Guerrero-Saade and Brian Bartholomew, in which they look at some of the deception tactics used in targeted attacks.

Read more  

Search blog

DoS attacks support political unrest

Estonia rioting backed up by attacks on government websites.
Estonia rioting backed up by attacks on government websites. Severe rioting in Estonia, sparked by anger over the removal of a Russian monument from a prominent war memorial, has… https://www.virusbulletin.com/blog/2007/05/dos-attacks-support-political-unrest/

Massive lawsuit brought against spam harvesters

Harvesting detection project aims to prosecute address abusers.
Harvesting detection project aims to prosecute address abusers. A community project dedicated to gathering information on the collection of email addresses for spamming purposes… https://www.virusbulletin.com/blog/2007/05/massive-lawsuit-brought-against-spam-harvesters/

Email this!

VB stops spammer in his tracks.
VB stops spammer in his tracks. A stark reminder of the ingenuity of spammers was received by VB's web team last month thanks to a brief incident involving the VB web server.… https://www.virusbulletin.com/blog/2007/05/email/

A new generation of Panda

Panda sells majority shareholding.
Panda sells majority shareholding. Spanish security vendor Panda Software has announced the sale of 75% of its shareholding to southern European investment group Investindustrial… https://www.virusbulletin.com/blog/2007/05/new-generation-panda/

VB100 procedure review

Test procedures clarified.
Test procedures clarified.VB has reviewed the test procedures for the VB100 comparative testing and certification program. An updated version of the VB100 procedures document is… https://www.virusbulletin.com/blog/2007/05/procedure-review/

May issue of VB published

The May issue of Virus Bulletin is now available for subscribers to download.
The May issue of Virus Bulletin is now available for subscribers to download. The May 2007 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2007/05/may-issue-vb-published/

Erratum: VB100 Linux comparative

Dr.Web results corrected.
Dr.Web results corrected. Upon closer analysis of the latest set of VB100 test results (see VB, April 2007, p.11) VB has regrettably discovered some errors in the detection figures… https://www.virusbulletin.com/blog/2007/05/erratum-linux-comparative/

Websense snaps up SurfControl

$400m for British web-filtering company.
$400m for British web-filtering company. US firm Websense has sealed a $400m cash deal to acquire British web-filtering company SurfControl. The 700-pence-per-share price paid by… https://www.virusbulletin.com/blog/2007/05/websense-snaps-surfcontrol/

May

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2007/05/

Google advert exploit attack analysed

Video demonstrates malware infiltration via ads for legitimate sites.
Video demonstrates malware infiltration via ads for legitimate sites. Details continue to emerge of a serious attack using the Google Adwords advertising system to lure… https://www.virusbulletin.com/blog/2007/05/google-advert-exploit-attack-analysed/

Governments making moves to combat cybercrime

Laws and agencies beginning to target online fraud and ID theft.
Laws and agencies beginning to target online fraud and ID theft. With profits from fraud using privileged personal data stolen via phishing or spyware rocketing and making the… https://www.virusbulletin.com/blog/2007/04/governments-making-moves-combat-cybercrime/

Theft spam, fraud and web threats may rival ad spam

Spring threat reports show rise in spying, zombies, spear-phishing and cracked websites.
Spring threat reports show rise in spying, zombies, spear-phishing and cracked websites. A series of reports released in recent weeks, surveying the latest developments in spam and… https://www.virusbulletin.com/blog/2007/04/theft-spam-fraud-and-web-threats-may-rival-ad-spam/

Experts predict no let-up in malcode development

Kaspersky and Russinovich warn of growth in Vista, non-Windows malware.
Kaspersky and Russinovich warn of growth in Vista, non-Windows malware. Security experts have been making predictions for the future of malware and anti-malware developments, with… https://www.virusbulletin.com/blog/2007/04/experts-predict-no-let-malcode-development/

McAfee VirusScan vulnerability found, patched

Multibyte character overflow issue breaches on-access defences.
Multibyte character overflow issue breaches on-access defences. A vulnerability has been reported in the on-access component of McAfee's flagship VirusScan product, which could be… https://www.virusbulletin.com/blog/2007/04/mcafee-virusscan-vulnerability-found-patched/

Latest VB100 comparative announced

Windows XP products to be tested for June issue.
Windows XP products to be tested for June issue. VB has announced the next round of VB100% comparative testing, to be run on the Microsoft Windows XP platform. Submissions of… https://www.virusbulletin.com/blog/2007/04/latest-comparative-announced/

Mobile-to-human virus scare hits Asian nations

Rumours of killer mobile malware travel from Pakistan to Afghanistan.
Rumours of killer mobile malware travel from Pakistan to Afghanistan. The effects of a possible prank which sparked considerable public panic in one country have travelled to a… https://www.virusbulletin.com/blog/2007/04/mobile-human-virus-scare-hits-asian-nations/

Worms exploiting Windows DNS flaw

Zero-day vulnerability quickly used to transmit attacks.
Zero-day vulnerability quickly used to transmit attacks. The zero-day vulnerability in Microsoft's DNS server service, reported last week just after the release of the monthly… https://www.virusbulletin.com/blog/2007/04/worms-exploiting-windows-dns-flaw/

Dr.Web Linux VB100 update

Dr.Web test results recalculated.
Dr.Web test results recalculated. Upon closer analysis of the latest set of VB100 test results VB has regrettably discovered some errors in the detection figures shown for Doctor… https://www.virusbulletin.com/blog/2007/04/dr-web-linux-update/

Sexy pics push Skype malware

Messaging attack hides behind photo of girl in stilettos.
Messaging attack hides behind photo of girl in stilettos. More malware has been reported spreading through the Skype API, sending links to itself to addresses gathered from… https://www.virusbulletin.com/blog/2007/04/sexy-pics-push-skype-malware/

Spam-fighters coalition formed

ICSA announces cooperative forum of anti-spam developers.
ICSA announces cooperative forum of anti-spam developers.CyberTrust-owned ICSA Labs has announced the formation of the Anti-Spam Product Developers' Consortium, a grouping of… https://www.virusbulletin.com/blog/2007/04/spam-fighters-coalition-formed/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.