VB Blog

VB2019 paper: Fantastic Information and Where to Find it: A guidebook to open-source OT reconnaissance

Posted by   Martijn Grooten on   Nov 22, 2019

A VB2019 paper by FireEye researcher Daniel Kapellmann Zafra explained how open source intelligence (OSINT) can be used to learn crucial details of the inner workings of many a system. Today we publish Daniel's paper and the recording of his presentation.

Read more  

VB2019 paper: Different ways to cook a crab: GandCrab Ransomware-as-a-Service (RaaS) analysed in depth

Posted by   Martijn Grooten on   Nov 21, 2019

Though active for not much longer than a year, GandCrab had been one of the most successful ransomware operations. In a paper presented at VB2019 in London, McAfee researchers John Fokker and Alexandre Mundo looked at the malware code, its evolution and the affiliate scheme behind it. Today we publish both their paper and the recording of their presentation.

Read more  

VB2019 paper: Domestic Kitten: an Iranian surveillance program

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, Check Point researchers Aseel Kayal and Lotem Finkelstein presented a paper detailing an Iranian operation they named 'Domestic Kitten' that used Android apps for targeted surveillance. Today we publish their paper and the video of their presentation.

Read more  

VB2019 video: Discretion in APT: recent APT attack on crypto exchange employees

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, LINE's HeungSoo Kang explained how cryptocurrency exchanges had been attacked using Firefox zero-days. Today, we publish the video of his presentation.

Read more  

VB2019 paper: DNS on fire

Posted by   Martijn Grooten on   Nov 7, 2019

In a paper presented at VB2019, Cisco Talos researchers Warren Mercer and Paul Rascagneres looked at two recent attacks against DNS infrastructure: DNSpionage and Sea Turtle. Today we publish their paper and the recording of their presentation.

Read more  

German Dridex spam campaign is unfashionably large

Posted by   Martijn Grooten on   Nov 6, 2019

VB has analysed a malicious spam campaign targeting German-speaking users with obfuscated Excel malware that would likely download Dridex but that mostly stood out through its size.

Read more  

Paper: Dexofuzzy: Android malware similarity clustering method using opcode sequence

Posted by   Martijn Grooten on   Nov 5, 2019

We publish a paper by researchers from ESTsecurity in South Korea, who describe a fuzzy hashing algorithm for clustering Android malware datasets.

Read more  

Emotet continues to bypass many email security products

Posted by   Martijn Grooten on   Nov 4, 2019

Having returned from a summer hiatus, Emotet is back targeting inboxes and, as seen in the VBSpam test lab, doing a better job than most other malicious campaigns at bypassing email security products.

Read more  

VB2019 paper: We need to talk - opening a discussion about ethics in infosec

Posted by   Martijn Grooten on   Nov 1, 2019

Those working in the field of infosec are often faced with ethical dilemmas that are impossible to avoid. Today, we publish a VB2019 paper by Kaspersky researcher Ivan Kwiatkowski looking at ethics in infosec as well as the recording of Ivan's presentation.

Read more  

Stalkerware poses particular challenges to anti-virus products

Posted by   Martijn Grooten on   Oct 31, 2019

Malware used in domestic abuse situations is a growing threat, and the standard way for anti-virus products to handle such malware may not be good enough. But that doesn't mean there isn't an important role for anti-virus to play.

Read more  

Search blog

UN to curb spam within two years

UN aims to bring spam under control by 2007.
UN aims to bring spam under control by 2007. Representatives of the United Nation's International Telecommunications Union (ITU) meeting in Geneva this week as part of the World… https://www.virusbulletin.com/blog/2004/07/un-curb-spam-within-two-years/

International pact to fight spam

Countries join forces to declare war on spam.
Countries join forces to declare war on spam. Representatives from the US, the UK and Australia have signed a 'Memorandum of Understanding' (MoU) on spam. The agreement was… https://www.virusbulletin.com/blog/2004/07/international-pact-fight-spam/

Magold teen on probation

Hungarian virus writer convicted.
Hungarian virus writer convicted. A Hungarian teenager has been sentenced to two years' probation for creating the Magold virus. Earlier this week the Veszprem City Court… https://www.virusbulletin.com/blog/2004/07/magold-teen-probation/

July

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2004/07/

Patent filed for voice spam blocking technology

Technology to stamp out Internet telephony spam.
Technology to stamp out Internet telephony spam. A patent application has been filed for a method to identify and block SPIT - spam over Internet telephony, or VoIP spam. SPIT, or… https://www.virusbulletin.com/blog/2004/06/patent-filed-voice-spam-blocking-technology/

SMS spammer arrested

First Russian to be sentenced for sending spam.
First Russian to be sentenced for sending spam. Russian student Dmitry Anosov made history last month when he became the first Russian to be sentenced for sending spam - even… https://www.virusbulletin.com/blog/2004/06/sms-spammer-arrested/

7 steps to a spam-free existence?

Anti-virus and security related articles provided by independent anti-virus advisors, Virus Bulletin
"Stunning" survey results lead to seven-step guide. Email security firm Vircom has issued a seven-step guide to avoiding spam, after its six-month study revealed (shock, horror)… https://www.virusbulletin.com/blog/2004/06/7-steps-spam-free-existence/

Gates urges users to turn on auto-update

Microsoft chief says users must play their part in cutting down virus combat time.
Microsoft chief says users must play their part in cutting down virus combat time. Microsoft chief Bill Gates has pledged that the time taken for Microsoft to patch… https://www.virusbulletin.com/blog/2004/06/gates-urges-users-turn-auto-update/

Microsoft issues advice about critical vulnerability

Apply your patches and update your AV software.
Apply your patches and update your AV software. Microsoft has issued advice on what you should know about Download.Ject The Trojan downloader, also known as JS/Scob.A and Toofer,… https://www.virusbulletin.com/blog/2004/06/microsoft-issues-advice-about-critical-vulnerability/

AOL victim of inside spam job

AOL employee arrested.
AOL employee arrested. An AOL employee has been arrested and charged with selling the company's customer email list to spammers. 24-year-old AOL engineer Jason Smathers is accused… https://www.virusbulletin.com/blog/2004/06/aol-victim-inside-spam-job/

ISPs take responsibility

The six major ISPs of the Anti-Spam Technical Alliance say spam cannot be stopped unless they take action.
The six major ISPs of the Anti-Spam Technical Alliance say spam cannot be stopped unless they take action. Six major Internet Service Providers have put forward a joint proposal… https://www.virusbulletin.com/blog/2004/06/isps-take-responsibility/

Microsoft to buy NAI?

Rumours abound. NAI CEO denies them.
Rumours abound. NAI CEO denies them. Tech news website CRN reports that AV vendor Network Associates is up for sale, and that Microsoft is the likely lucky new owner. Although no… https://www.virusbulletin.com/blog/2004/06/microsoft-buy-nai/

Obituary: Marek Sell

On 12 June 2004 Marek Sell, creator of the Polish MkS_Vir anti-virus, died. Aleksander Czarnowksi looks back.
On 12 June 2004 Marek Sell, creator of the Polish MkS_Vir anti-virus, died. Aleksander Czarnowksi looks back. I met Marek somewhere around 1990, two years after he released the… https://www.virusbulletin.com/blog/2004/06/obituary-marek-sell/

AV going mobile

Mobile providers clamour to become the first to offer AV protection for mobile phones.
Mobile providers clamour to become the first to offer AV protection for mobile phones. Following the appearance of SymbOS/Cabir.A, the first virus capable of spreading via mobile… https://www.virusbulletin.com/blog/2004/06/av-going-mobile/

Sasser author jobseeking

Gis' a job! Name: Sven Jaschan. Age: 18. Previous work experience: creating and distributing Internet worm(s).
Gis' a job! Name: Sven Jaschan. Age: 18. Previous work experience: creating and distributing Internet worm(s). The lawyer representing Sven Jaschan, self-confessed author of the… https://www.virusbulletin.com/blog/2004/06/sasser-author-jobseeking/

Microsoft AV still on track

Not forgotten...
Not forgotten... Microsoft is still on track to offer its own anti-virus product, according to the chief of its security business unit. It has been a year since Microsoft… https://www.virusbulletin.com/blog/2004/06/microsoft-av-still-track/

FTC says no to 'Do Not Spam'

A 'Do Not Spam' list could actually increase spam levels, says FTC.
A 'Do Not Spam' list could actually increase spam levels, says FTC. The Federal Trade Commission (FTC) has told Congress that a national 'Do Not Spam' registry is not appropriate… https://www.virusbulletin.com/blog/2004/06/ftc-says-no-do-not-spam/

Virus calling

First mobile phone worm discovered.
First mobile phone worm discovered. The first worm to be capable of spreading via mobile phones has been discovered. The initial announcement of the proof-of-concept worm was… https://www.virusbulletin.com/blog/2004/06/virus-calling/

More spammers sued

Microsoft throws its weight around against spammers
Microsoft throws its weight around against spammers Microsoft has filed eight new lawsuits against spammers. All of the suits allege spoofing and falsifying of domain names.… https://www.virusbulletin.com/blog/2004/06/more-spammers-sued/

Virus cost MOD £10 million

Ministry of Defence reveals Lovgate found a weakness in its defences
Ministry of Defence reveals Lovgate found a weakness in its defences According to Computer Weekly the UK's Ministry of Defence (MOD) has revealed that, last year, it spent £10m on… https://www.virusbulletin.com/blog/2004/06/virus-cost-mod-10-million/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.