VB Blog

VB2019 paper: Fantastic Information and Where to Find it: A guidebook to open-source OT reconnaissance

Posted by   Martijn Grooten on   Nov 22, 2019

A VB2019 paper by FireEye researcher Daniel Kapellmann Zafra explained how open source intelligence (OSINT) can be used to learn crucial details of the inner workings of many a system. Today we publish Daniel's paper and the recording of his presentation.

Read more  

VB2019 paper: Different ways to cook a crab: GandCrab Ransomware-as-a-Service (RaaS) analysed in depth

Posted by   Martijn Grooten on   Nov 21, 2019

Though active for not much longer than a year, GandCrab had been one of the most successful ransomware operations. In a paper presented at VB2019 in London, McAfee researchers John Fokker and Alexandre Mundo looked at the malware code, its evolution and the affiliate scheme behind it. Today we publish both their paper and the recording of their presentation.

Read more  

VB2019 paper: Domestic Kitten: an Iranian surveillance program

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, Check Point researchers Aseel Kayal and Lotem Finkelstein presented a paper detailing an Iranian operation they named 'Domestic Kitten' that used Android apps for targeted surveillance. Today we publish their paper and the video of their presentation.

Read more  

VB2019 video: Discretion in APT: recent APT attack on crypto exchange employees

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, LINE's HeungSoo Kang explained how cryptocurrency exchanges had been attacked using Firefox zero-days. Today, we publish the video of his presentation.

Read more  

VB2019 paper: DNS on fire

Posted by   Martijn Grooten on   Nov 7, 2019

In a paper presented at VB2019, Cisco Talos researchers Warren Mercer and Paul Rascagneres looked at two recent attacks against DNS infrastructure: DNSpionage and Sea Turtle. Today we publish their paper and the recording of their presentation.

Read more  

German Dridex spam campaign is unfashionably large

Posted by   Martijn Grooten on   Nov 6, 2019

VB has analysed a malicious spam campaign targeting German-speaking users with obfuscated Excel malware that would likely download Dridex but that mostly stood out through its size.

Read more  

Paper: Dexofuzzy: Android malware similarity clustering method using opcode sequence

Posted by   Martijn Grooten on   Nov 5, 2019

We publish a paper by researchers from ESTsecurity in South Korea, who describe a fuzzy hashing algorithm for clustering Android malware datasets.

Read more  

Emotet continues to bypass many email security products

Posted by   Martijn Grooten on   Nov 4, 2019

Having returned from a summer hiatus, Emotet is back targeting inboxes and, as seen in the VBSpam test lab, doing a better job than most other malicious campaigns at bypassing email security products.

Read more  

VB2019 paper: We need to talk - opening a discussion about ethics in infosec

Posted by   Martijn Grooten on   Nov 1, 2019

Those working in the field of infosec are often faced with ethical dilemmas that are impossible to avoid. Today, we publish a VB2019 paper by Kaspersky researcher Ivan Kwiatkowski looking at ethics in infosec as well as the recording of Ivan's presentation.

Read more  

Stalkerware poses particular challenges to anti-virus products

Posted by   Martijn Grooten on   Oct 31, 2019

Malware used in domestic abuse situations is a growing threat, and the standard way for anti-virus products to handle such malware may not be good enough. But that doesn't mean there isn't an important role for anti-virus to play.

Read more  

Search blog

VB2006 conference programme revealed

The VB2006 conference programme is now available.
The VB2006 conference programme is now available. VB has revealed the conference programme for VB2006, the 16th Virus Bulletin International Conference. The three-day conference… https://www.virusbulletin.com/blog/2006/04/conference-programme-revealed/

Grisoft makes acquisition

AVG developer acquires Ewido Networks.
AVG developer acquires Ewido Networks. Anti-Virus vendor Grisoft has announced the acquisition of German anti-malware firm Ewido Networks. Although one of the smaller players in… https://www.virusbulletin.com/blog/2006/04/grisoft-makes-acquisition/

More updating woes

Another troublesome month for security vendors.
Another troublesome month for security vendors. Last month we reported on problems for Kaspersky, Sophos and Microsoft caused by faulty updates. This month it is the turn of… https://www.virusbulletin.com/blog/2006/04/more-updating-woes/

Largest can-spam fine to be paid

Internet marketing firm makes $900,000 settlement.
Internet marketing firm makes $900,000 settlement. An Internet marketing firm in the US has agreed to pay $900,000 to settle a case brought against it by the Federal Trade… https://www.virusbulletin.com/blog/2006/04/largest-can-spam-fine-be-paid/

Spy couple sentenced

Trojan peddlers get their comeuppance.
Trojan peddlers get their comeuppance. An Israeli couple who ran a private investigation service have been handed jail sentences and a $426,000 fine after pleading guilty to… https://www.virusbulletin.com/blog/2006/04/spy-couple-sentenced/

Code of practice for Australia's ISPs

Legislative code to come into force.
Legislative code to come into force. The Australian Communications and Media Authority (ACMA) is poised to introduce a legislative code of practice for ISPs that could see hefty… https://www.virusbulletin.com/blog/2006/04/code-practice-australia-s-isps/

China calculates cost of spam

Lost productivity costs dear.
Lost productivity costs dear. Spam is costing China $756m (6.069 billion yuan) every year according to estimates by the Internet Society of China (ISC). The figure, published in… https://www.virusbulletin.com/blog/2006/04/china-calculates-cost-spam/

'Real' computer virus

Digital life form.
Digital life form. Researchers in the US have constructed a virtual version of the satellite tobacco mosaic virus using more than a million 'digital atoms'. The researchers used… https://www.virusbulletin.com/blog/2006/04/real-computer-virus/

April

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/04/

Hotbar adware dispute settled

Symantec settles adware case
Symantec settles adware case Symantec has reached an out-of-court agreement in the pre-emptive lawsuit it filed against marketing firm Hotbar.com Inc. In the unusual case, the… https://www.virusbulletin.com/blog/2006/03/hotbar-adware-dispute-settled/

China to crack down on spam

China toughens up its anti-spam regulations
China toughens up its anti-spam regulations The Chinese Government has introduced a set of regulations aimed at reducing the amount of spam circulating in the country. The sending… https://www.virusbulletin.com/blog/2006/03/china-crack-down-spam/

March

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/03/

Updating niggles

Troublesome month for security vendors
Troublesome month for security vendors Last month proved to be troublesome for security vendors Sophos, Microsoft and Kaspersky, as niggles with updates caused problems for their… https://www.virusbulletin.com/blog/2006/03/updating-niggles/

Vigilant staff avert phishing scam

Scammers halted in their tracks
Scammers halted in their tracks A web-hosting company based in New Zealand claims that, thanks to the vigilance of its staff, it has averted a potential phishing scam targeted at… https://www.virusbulletin.com/blog/2006/03/vigilant-staff-avert-phishing-scam/

Dutch police arrest Nigerian scammers

419 scamming ring uncovered
419 scamming ring uncovered Dutch police arrested 12 Nigerians in Amsterdam last month after they were found to be operating a 419 scamming ring. According to Dutch police, who… https://www.virusbulletin.com/blog/2006/03/dutch-police-arrest-nigerian-scammers/

Addendum: The false positive disaster

Some concerns have arisen over the version of ClamAV tested for the article 'The false positive disaster'.
Some concerns have arisen over the version of ClamAV tested for the article 'The false positive disaster'. Some concerns have arisen over the version of ClamAV tested for the… https://www.virusbulletin.com/blog/2006/02/addendum-false-positive-disaster/

Hong Kong proposes anti-spam bill

Proposals for anti-spam legislation revealed.
Proposals for anti-spam legislation revealed. Hong Kong's Commerce, Industry & Technology Bureau has revealed its proposals for anti-spam legislation and launched a two-month… https://www.virusbulletin.com/blog/2006/02/hong-kong-proposes-anti-spam-bill/

VB2006 call for papers

The deadline for submitting paper proposals for VB2006 is fast approaching.
The deadline for submitting paper proposals for VB2006 is fast approaching. The deadline for submitting paper proposals for VB2006 is fast approaching. Abstracts of approximately… https://www.virusbulletin.com/blog/2006/02/call-papers/

Spammer to pay AOL over $5 million

Company wins case against prolific spammer.
Company wins case against prolific spammer.AOL is waiting to receive $5.6 million this month after winning its case against 25-year-old Minnesota spammer Christopher William… https://www.virusbulletin.com/blog/2006/02/spammer-pay-aol-over-5-million/

February

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/02/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.