VB Blog

VB2018 paper: Little Brother is watching – we know all your secrets!

Posted by   Martijn Grooten on   Feb 1, 2019

At VB2018 in Montreal, researchers from Fraunhofer SIT looked at privacy vulnerabilities in legitimate Android family-tracking apps that leaked location data. Today, we publish both their paper and the video of their presentation.

Read more  

Threat intelligence teams should consider recruiting journalists

Posted by   Martijn Grooten on   Jan 29, 2019

Threat intelligence teams would do well to recruit journalists, whose experience is crucial in today's threat landscape.

Read more  

From HSBC to product descriptions: the malicious emails bypassing your filters

Posted by   Martijn Grooten on   Jan 28, 2019

Using data from our VBSpam lab, we looked at the malicious emails that have been missed recently by a large number of email security products.

Read more  

VB2018 paper: Inside Formbook infostealer

Posted by   Martijn Grooten on   Jan 25, 2019

The Formbook information-stealing trojan may not be APT-grade malware, but its continuing spread means it can still be effective. At VB2018 in Montreal, Gabriela Nicolao, a researcher from Deloitte in Argentina, presented a short paper in which she looked at Formbook's background and history and analysed a sample of the malware. Today, we publish Gabriela's paper.

Read more  

The VB2019 CFP - how the selection procedure works

Posted by   Martijn Grooten on   Jan 24, 2019

With the VB2019 Call for Papers having opened last week, we explain how the selection procedure works, which may help you during your abstract submission.

Read more  

VB2018 paper: From Hacking Team to hacked team to…?

Posted by   Martijn Grooten on   Jan 18, 2019

Today we publish the VB2018 paper and video by ESET researcher Filip Kafka, who looked at the new malware by Hacking Team, after the company had recovered from the 2015 breach.

Read more  

The spam that is hardest to block is often the most damaging

Posted by   Martijn Grooten on   Jan 17, 2019

We see a lot of spam in the VBSpam test lab, and we also see how well such emails are being blocked by email security products. Worryingly, it is often the emails with a malicious attachment or a phishing link that are most likely to be missed.

Read more  

Throwback Thursday: We're all doomed

Posted by   Helen Martin on   Jan 17, 2019

Mydoom turns 15 this month, and is still being seen in email attachments. This Throwback Thursday we look back to March 2004, when Gabor Szappanos tracked the rise of W32/Mydoom.

Read more  

VB2019 call for papers - now open!

Posted by   Martijn Grooten on   Jan 15, 2019

Have you analysed a new online threat? Do you know a new way to defend against such threats? Are you tasked with securing systems and fending off attacks? The call for papers for VB2019 is now open and we want to hear from you!

Read more  

VB2018 paper: Unpacking the packed unpacker: reversing an Android anti-analysis library

Posted by   Martijn Grooten on   Jan 14, 2019

Today, we publish a VB2018 paper by Google researcher Maddie Stone in which she looks at one of the most interesting anti-analysis native libraries in the Android ecosystem. We also release the recording of Maddie's presentation.

Read more  

Search blog

Virtually There

The Infosecurity show and exhibition has gone virtual with the launch of the first Infosecurity World Online exhibition. But where are the sweets?
The Infosecurity show and exhibition has gone virtual with the launch of the first Infosecurity World Online exhibition. But where are the sweets? The Infosecurity show and… https://www.virusbulletin.com/blog/2002/09/virtually-there/

The youth of today...

Five Israeli teenagers have been charged in connection with writing and disseminating W32/Goner.
Five Israeli teenagers have been charged in connection with writing and disseminating W32/Goner. According to Israeli newspaper Ha'aretz, five youngsters have been charged with… https://www.virusbulletin.com/blog/2002/08/youth-today/

Bugs galore

Symantec's acquisition of SecurityFocus last month has unsettled a number of contributors to the BugTraq vulnerability list. So much so that they created a new one.
Symantec's acquisition of SecurityFocus last month has unsettled a number of contributors to the BugTraq vulnerability list. So much so that they created a new one. At the news of… https://www.virusbulletin.com/blog/2002/08/bugs-galore/

Retail Therapy

Symantec has been on a blow-out shopping spree...
Symantec has been on a blow-out shopping spree... Symantec has been on a blow-out shopping spree. Perhaps it was its purchase of Mountain Wave earlier this year that put the… https://www.virusbulletin.com/blog/2002/08/retail-therapy/

Third time unlucky

NAI's third attempt to re-acquire McAfee.com was scuppered yesterday when 96% of McAfee.com shareholders rejected NAI's latest exchange offer for McAfee.com shares.
NAI's third attempt to re-acquire McAfee.com was scuppered yesterday when 96% of McAfee.com shareholders rejected NAI's latest exchange offer for McAfee.com shares.NAI's third… https://www.virusbulletin.com/blog/2002/08/third-time-unlucky/

August

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2002/08/

Erratum: Windows XP comparative review: McAfee VirusScan

After re-testing, McAfee's VirusScan product gains a VB 100% award.
After re-testing, McAfee's VirusScan product gains a VB 100% award. Unfortunately an error occurred in Virus Bulletin's Windows XP comparative review (see VB June 2002, p.21):… https://www.virusbulletin.com/blog/2002/07/erratum-windows-xp-comparative-review-mcafee-virusscan/

July

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2002/07/

Crying wolf revisited

While one AV vendor comes in for a roasting, the others enjoy the rare taste of the moral high ground.
While one AV vendor comes in for a roasting, the others enjoy the rare taste of the moral high ground. Last month was Network Associates' turn to come in for a roasting over its… https://www.virusbulletin.com/blog/2002/07/crying-wolf-revisited/

Quarter byte squaw?

Worryingly, many sysadmins seemed unaware both of the Apache 'chunked encoding' bug and of their systems' vulnerability...
Worryingly, many sysadmins seemed unaware both of the Apache 'chunked encoding' bug and of their systems' vulnerability... This month has seen the elevation of what was thought… https://www.virusbulletin.com/blog/2002/07/quarter-byte-squaw/

Windows XP Professional comparative review

After re-testing, Panda Antivirus Platinum's on-access scanner product gains a VB 100% award.
After re-testing, Panda Antivirus Platinum's on-access scanner product gains a VB 100% award. Since the publication of the Windows XP comparative review in the June edition of… https://www.virusbulletin.com/blog/2002/06/windows-xp-professional-comparative-review/

Shakira cynicism

As reports begin to appear of the latest VBSWG variant climbing prevalence tables, VB has received a particularly relevant comment from sys-admin Scott Francis.
As reports begin to appear of the latest VBSWG variant climbing prevalence tables, VB has received a particularly relevant comment from sys-admin Scott Francis. As reports begin… https://www.virusbulletin.com/blog/2002/06/shakira-cynicism/

As complex as Euler's formula

IT news website Slashdot's report of Simile's cross-platform capabilities was met with the usual host of ill-informed, biased and naïve comments from users of the site.
IT news website Slashdot's report of Simile's cross-platform capabilities was met with the usual host of ill-informed, biased and naïve comments from users of the site. IT news… https://www.virusbulletin.com/blog/2002/06/complex-euler-s-formula/

June

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2002/06/

Outraged of Slovakia

Is there really any need to include virus samples in product tests? CNET seems to think it's not worth the bother.
Is there really any need to include virus samples in product tests? CNET seems to think it's not worth the bother. Recently VB received an email from an outraged user declaring… https://www.virusbulletin.com/blog/2002/05/outraged-slovakia/

Closed source sauce

Microsoft has claimed that open source software threatens security - unlike proprietary software such as its own SQL Server, currently playing vector to a new worm.
Microsoft has claimed that open source software threatens security - unlike proprietary software such as its own SQL Server, currently playing vector to a new worm. Goliath of the… https://www.virusbulletin.com/blog/2002/05/closed-source-sauce/

May

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2002/05/

2002

Latest news from the anti-virus industry provided by independent anti-virus advisors, Virus Bulletin
NewsStocks, viruses and a disgruntled employee A systems administrator has been charged with attempting to manipulate a company's stock price by introducing a virus into its… https://www.virusbulletin.com/blog/2002/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.