VB Blog

VB2019 paper: Fantastic Information and Where to Find it: A guidebook to open-source OT reconnaissance

Posted by   Martijn Grooten on   Nov 22, 2019

A VB2019 paper by FireEye researcher Daniel Kapellmann Zafra explained how open source intelligence (OSINT) can be used to learn crucial details of the inner workings of many a system. Today we publish Daniel's paper and the recording of his presentation.

Read more  

VB2019 paper: Different ways to cook a crab: GandCrab Ransomware-as-a-Service (RaaS) analysed in depth

Posted by   Martijn Grooten on   Nov 21, 2019

Though active for not much longer than a year, GandCrab had been one of the most successful ransomware operations. In a paper presented at VB2019 in London, McAfee researchers John Fokker and Alexandre Mundo looked at the malware code, its evolution and the affiliate scheme behind it. Today we publish both their paper and the recording of their presentation.

Read more  

VB2019 paper: Domestic Kitten: an Iranian surveillance program

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, Check Point researchers Aseel Kayal and Lotem Finkelstein presented a paper detailing an Iranian operation they named 'Domestic Kitten' that used Android apps for targeted surveillance. Today we publish their paper and the video of their presentation.

Read more  

VB2019 video: Discretion in APT: recent APT attack on crypto exchange employees

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, LINE's HeungSoo Kang explained how cryptocurrency exchanges had been attacked using Firefox zero-days. Today, we publish the video of his presentation.

Read more  

VB2019 paper: DNS on fire

Posted by   Martijn Grooten on   Nov 7, 2019

In a paper presented at VB2019, Cisco Talos researchers Warren Mercer and Paul Rascagneres looked at two recent attacks against DNS infrastructure: DNSpionage and Sea Turtle. Today we publish their paper and the recording of their presentation.

Read more  

German Dridex spam campaign is unfashionably large

Posted by   Martijn Grooten on   Nov 6, 2019

VB has analysed a malicious spam campaign targeting German-speaking users with obfuscated Excel malware that would likely download Dridex but that mostly stood out through its size.

Read more  

Paper: Dexofuzzy: Android malware similarity clustering method using opcode sequence

Posted by   Martijn Grooten on   Nov 5, 2019

We publish a paper by researchers from ESTsecurity in South Korea, who describe a fuzzy hashing algorithm for clustering Android malware datasets.

Read more  

Emotet continues to bypass many email security products

Posted by   Martijn Grooten on   Nov 4, 2019

Having returned from a summer hiatus, Emotet is back targeting inboxes and, as seen in the VBSpam test lab, doing a better job than most other malicious campaigns at bypassing email security products.

Read more  

VB2019 paper: We need to talk - opening a discussion about ethics in infosec

Posted by   Martijn Grooten on   Nov 1, 2019

Those working in the field of infosec are often faced with ethical dilemmas that are impossible to avoid. Today, we publish a VB2019 paper by Kaspersky researcher Ivan Kwiatkowski looking at ethics in infosec as well as the recording of Ivan's presentation.

Read more  

Stalkerware poses particular challenges to anti-virus products

Posted by   Martijn Grooten on   Oct 31, 2019

Malware used in domestic abuse situations is a growing threat, and the standard way for anti-virus products to handle such malware may not be good enough. But that doesn't mean there isn't an important role for anti-virus to play.

Read more  

Search blog

New faces

VB welcomes new Technical Consultant.
VB welcomes new Technical Consultant. VB is pleased to announce the arrival of a new team member. Following the departure of Matt Ham last month, John Hawes is joining us to take… https://www.virusbulletin.com/blog/2006/07/new-faces/

July

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/07/

m00p group members arrested

Three members of virus-writing gang held.
Three members of virus-writing gang held. Three members of a malware-writing group were arrested last month following investigations in Finland and the UK. The three men - a… https://www.virusbulletin.com/blog/2006/07/m00p-group-members-arrested/

Big bucks

AV software revenues increase.
AV software revenues increase. Anti-virus software revenues reached $4 billion worldwide last year - an increase of 13.6% on the previous year - according to industry analyst… https://www.virusbulletin.com/blog/2006/07/big-bucks/

Phone phishes

Watch out for fake SMS messages.
Watch out for fake SMS messages. A sneaky new phishing technique emerged last month, in which initial contact is made with victims via SMS text message. In the attack, an SMS… https://www.virusbulletin.com/blog/2006/07/phone-phishes/

False positive reduction

Amendment to VB's June Windows XP comparative review.
Amendment to VB's June Windows XP comparative review. In Virus Bulletin's June 2006 Windows XP comparative review (see VB, June 2006, p.11), VB reported that Alwil's product… https://www.virusbulletin.com/blog/2006/07/false-positive-reduction/

June issue of VB published

The June issue of Virus Bulletin is now available for subscribers to download.
The June issue of Virus Bulletin is now available for subscribers to download. The June 2006 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2006/06/june-issue-vb-published/

June

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/06/

OneCare goes live

Microsoft anti-virus goes on general release.
Microsoft anti-virus goes on general release.Microsoft's anti-virus software Windows Live OneCare is due to go on general release this month. OneCare, which has been available… https://www.virusbulletin.com/blog/2006/06/onecare-goes-live/

Bank takes steps to increase customer security

Bank signs deal with AV vendor in an attempt to stop phishers in their tracks.
Bank signs deal with AV vendor in an attempt to stop phishers in their tracks. In an attempt to prevent online banking fraud, a British bank has signed a deal with Finnish… https://www.virusbulletin.com/blog/2006/06/bank-takes-steps-increase-customer-security/

Gone phishing in Japan

Japan's first crackdown on organized phishing.
Japan's first crackdown on organized phishing. Police in Kyoto have arrested eight men in Japan's first crackdown on organized phishing. The men are suspected of belonging to a… https://www.virusbulletin.com/blog/2006/06/gone-phishing-japan/

Symantec vulnerability discovered - and fixed

Buffer overflow vulnerability found in corporate AV software.
Buffer overflow vulnerability found in corporate AV software.Symantec was quick to respond late last month to the discovery of a potentially critical vulnerability in the latest… https://www.virusbulletin.com/blog/2006/06/symantec-vulnerability-discovered-and-fixed/

Blue Frog croaks but may rise again

Open source project to create anti-spam opt-out tool based on the defunct Blue Frog service.
Open source project to create anti-spam opt-out tool based on the defunct Blue Frog service. Last month, Blue Frog, the anti-spam service offered by Blue Security, was forced to… https://www.virusbulletin.com/blog/2006/06/blue-frog-croaks-may-rise-again/

OECD calls for coordination and cooperation

OECD issues 'Recommendation on Cross-Border Cooperation in the Enforcement of Laws against Spam'.
OECD issues 'Recommendation on Cross-Border Cooperation in the Enforcement of Laws against Spam'. The Organization for Economic Cooperation and Development (OECD) has called on… https://www.virusbulletin.com/blog/2006/05/oecd-calls-coordination-and-cooperation/

VoIP phishing scam

New species of phish spotted.
New species of phish spotted. A new variety of phishing scam was spotted last month: VoIP phishing. Instead of coercing victims into entering their confidential details on a fake… https://www.virusbulletin.com/blog/2006/05/voip-phishing-scam/

May issue of VB published

The May issue of Virus Bulletin is now available for subscribers to download.
The May issue of Virus Bulletin is now available for subscribers to download. The May 2006 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2006/05/may-issue-vb-published/

May

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/05/

Spam papers available

Organizers of the 2006 Spam Conference encourage you to get reading.
Organizers of the 2006 Spam Conference encourage you to get reading. Papers and slides from the 2006 Spam Conference held at the end of March are now available online. The… https://www.virusbulletin.com/blog/2006/05/spam-papers-available/

Security survey and checklist

Attempt to gain better understanding of the costs of computer security incidents.
Attempt to gain better understanding of the costs of computer security incidents. Businesses in the US have been urged to complete a survey issued jointly by the US Departments of… https://www.virusbulletin.com/blog/2006/05/security-survey-and-checklist/

VB job vacancy

There are currently no job vacancies at Virus Bulletin.
There are currently no job vacancies at Virus Bulletin. Posted on 8 June 2006 by Virus Bulletin https://www.virusbulletin.com/blog/2006/04/vb-job-vacancy/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.