VB Blog

Subtle change could see a reduction in installation of malicious Chrome extensions

Posted by   Martijn Grooten on   Jun 13, 2018

Google has made a subtle change to its Chrome browser, banning the inline installation of new extensions, thus making it harder for malware authors to trick users into unwittingly installing malicious extensions.

Read more  

Paper: EternalBlue: a prominent threat actor of 2017–2018

Posted by   Martijn Grooten on   Jun 11, 2018

We publish a paper by researchers from Quick Heal Security Labs in India, who study the EternalBlue and DoublePulsar exploits in full detail.

Read more  

'North Korea' a hot subject among VB2018 talks

Posted by   Virus Bulletin on   Jun 1, 2018

Several VB2018 papers deal explicitly or implicitly with threats that have been attributed to North Korean actors.

Read more  

Expired domain led to SpamCannibal's blacklist eating the whole world

Posted by   Martijn Grooten on   May 31, 2018

The domain of the little-used SpamCannibal DNS blacklist had expired, resulting in it effectively listing every single IP address.

Read more  

MnuBot banking trojan communicates via SQL server

Posted by   Martijn Grooten on   May 30, 2018

Researchers at IBM X-Force have discovered MnuBot, a banking trojan targeting users in Brazil, which is noteworthy for using SQL Server for command and control communication.

Read more  

Throwback Thursday: Giving the EICAR test file some teeth

Posted by   Martijn Grooten on   May 24, 2018

The 68-byte EICAR test file plays as important a role today as it did 19 years ago. In this week's Throwback Thursday we look back at a VB99 conference paper in which Randy Abrams described how this 'miracle tool' worked and how it could be used.

Read more  

XMRig used in new macOS cryptominer

Posted by   Martijn Grooten on   May 23, 2018

A new piece of cryptocurrency-mining malware on macOS has been found to use the popular XMRig miner.

Read more  

Tendency for DDoS attacks to become less volumetric fits in a wider trend

Posted by   Martijn Grooten on   May 22, 2018

CDN provider Cloudflare reports an increase in DDoS attacks targeting layer 7 and focusing on exhausting server resources rather than sending large volumes of data. This fits in a wider trend.

Read more  

Turkish Twitter users targeted with mobile FinFisher spyware

Posted by   Martijn Grooten on   May 15, 2018

Through fake social media accounts, users were tricked into installing an Android application that was actually a mobile version of the FinFisher spyware.

Read more  

Hide'n'Seek IoT botnet adds persistence

Posted by   Martijn Grooten on   May 9, 2018

The Hide'n'Seek IoT botnet has received an update to make its infection persist on infected devices beyond a restart.

Read more  

Search blog

Smartphone security sphere to reach $5 billion by 2011

Market analysts foresee boom in mobile threats and security market.
Market analysts foresee boom in mobile threats and security market. UK-based telecoms analyst Juniper Research has released a report predicting a steady rise in attacks on… https://www.virusbulletin.com/blog/2006/12/smartphone-security-sphere-reach-5-billion-2011/

MIME tricks beat email virus scanners

Simple encoding dodges slip malware past gateways.
Simple encoding dodges slip malware past gateways. A security researcher released a report last week claiming that some simple manipulation allowed him to get mails containing the… https://www.virusbulletin.com/blog/2006/12/mime-tricks-beat-email-virus-scanners/

Anti-spyware activists condemn rogue MP3 search firm

CDT and StopBadware unite in call for action against spyware pushers.
CDT and StopBadware unite in call for action against spyware pushers. The Center for Democracy and Technology (CDT) and StopBadware.org have issued a joint complaint to the Federal… https://www.virusbulletin.com/blog/2006/12/anti-spyware-activists-condemn-rogue-mp3-search-firm/

Adobe hit by second vulnerability

More document software security worries.
More document software security worries. PDF software giant Adobe has released details of its second vulnerability in little over a week. The first, which was discovered in the… https://www.virusbulletin.com/blog/2006/12/adobe-hit-second-vulnerability/

Free firewalls rated best in leak tests

Leakage review puts Comodo, Jetico way ahead of field.
Leakage review puts Comodo, Jetico way ahead of field. An in-depth study subjecting 23 different personal firewall products to a range of leak tests has granted two free products,… https://www.virusbulletin.com/blog/2006/12/free-firewalls-rated-best-leak-tests/

Mobile spam wave hits Europe

Multilingual SMS spams reported.
Multilingual SMS spams reported. Mobile security researchers at F-Secure have received numerous reports of SMS spams from across Europe, in a variety of languages. Links in the… https://www.virusbulletin.com/blog/2006/12/mobile-spam-wave-hits-europe/

Trojan spreading mobile spyware

Consumer phone-snooping tool dropped by Symbian malware.
Consumer phone-snooping tool dropped by Symbian malware. A new variant of the MultiDropper trojan targeting Symbian smartphones has included amongst its payload a 'legitimate'… https://www.virusbulletin.com/blog/2006/12/trojan-spreading-mobile-spyware/

MS Word zero-day exploit seen in wild

Microsoft warns of attacks using vulnerability.
Microsoft warns of attacks using vulnerability.Microsoft has issued a security bulletin warning of a serious vulnerability discovered in several versions of Microsoft Word and… https://www.virusbulletin.com/blog/2006/12/ms-word-zero-day-exploit-seen-wild/

Firm charged $1 million in rogue spyware case

Heavy fines and fees hit fake 'Spyware Cleaner' pushers.
Heavy fines and fees hit fake 'Spyware Cleaner' pushers. A Seattle court has announced a $1 million settlement in a case brought against a spyware firm, marking the first… https://www.virusbulletin.com/blog/2006/12/firm-charged-1-million-rogue-spyware-case/

EU to fund Symantec phishing studies

Security firm in consortium researching phishing prevention.
Security firm in consortium researching phishing prevention.Symantec announced yesterday an award of funding from the European Commission to pay for research into securing email… https://www.virusbulletin.com/blog/2006/12/eu-fund-symantec-phishing-studies/

MySpace hit by worm, adware and phishing

Exploit in QuickTime file infecting social site profile pages.
Exploit in QuickTime file infecting social site profile pages. A malicious QuickTime movie file is spreading across social networking site MySpace, embedding itself in the user… https://www.virusbulletin.com/blog/2006/12/myspace-hit-worm-adware-and-phishing/

Vista launched, malware still a danger

New Windows version on sale, but viruses remain a threat, says Sophos
New Windows version on sale, but viruses remain a threat, says Sophos The corporate version Microsoft's long-awaited update to its Windows operating system was finally released… https://www.virusbulletin.com/blog/2006/12/vista-launched-malware-still-danger/

China source of huge phishing surge

Spam watchers see major jump in scam spam sent from China
Spam watchers see major jump in scam spam sent from China Analysts at email and web security firm Marshal have reported a major spike in the numbers of phishing email originating… https://www.virusbulletin.com/blog/2006/12/china-source-huge-phishing-surge/

December

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/12/

December issue of VB published

The December issue of Virus Bulletin is now available for subscribers to download.
The December issue of Virus Bulletin is now available for subscribers to download. The December 2006 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2006/12/december-issue-vb-published/

Festive greetings

Yuletide wishes.
Yuletide wishes. The VB team wishes all Virus Bulletin readers a very happy Christmas and a prosperous and peaceful new year. This year, continuing the tradition of its Christmas… https://www.virusbulletin.com/blog/2006/12/festive-greetings/

Anti-spammer loses case

Anti-spam activist sued in case that brings enforceability of state anti-spam laws into question.
Anti-spam activist sued in case that brings enforceability of state anti-spam laws into question. An anti-spam activist has successfully been sued in a US federal court by the… https://www.virusbulletin.com/blog/2006/12/anti-spammer-loses-case/

In the picture?

Remember VB94?
Remember VB94? Were you at VB94 in Jersey? VB has unearthed some photos taken at the fourth Virus Bulletin Conference. To see those who were the fresh faces of the anti-virus… https://www.virusbulletin.com/blog/2006/12/picture/

Stocking filler

Collection of 419 baiting tales.
Collection of 419 baiting tales. If you're stuck for a last-minute Christmas gift idea, Mike Berry's new book could be the answer. Mike Berry is the creator of 'scam-baiting'… https://www.virusbulletin.com/blog/2006/12/stocking-filler/

Europe facing 38 billion spams a day by 2010

Research group releases report on future spam trends.
Research group releases report on future spam trends. Technology market research firm The Radicati Group has unveiled an in-depth study of likely future trends in the European… https://www.virusbulletin.com/blog/2006/11/europe-facing-38-billion-spams-day-2010/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.