VB Blog

VB2019 paper: Fantastic Information and Where to Find it: A guidebook to open-source OT reconnaissance

Posted by   Martijn Grooten on   Nov 22, 2019

A VB2019 paper by FireEye researcher Daniel Kapellmann Zafra explained how open source intelligence (OSINT) can be used to learn crucial details of the inner workings of many a system. Today we publish Daniel's paper and the recording of his presentation.

Read more  

VB2019 paper: Different ways to cook a crab: GandCrab Ransomware-as-a-Service (RaaS) analysed in depth

Posted by   Martijn Grooten on   Nov 21, 2019

Though active for not much longer than a year, GandCrab had been one of the most successful ransomware operations. In a paper presented at VB2019 in London, McAfee researchers John Fokker and Alexandre Mundo looked at the malware code, its evolution and the affiliate scheme behind it. Today we publish both their paper and the recording of their presentation.

Read more  

VB2019 paper: Domestic Kitten: an Iranian surveillance program

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, Check Point researchers Aseel Kayal and Lotem Finkelstein presented a paper detailing an Iranian operation they named 'Domestic Kitten' that used Android apps for targeted surveillance. Today we publish their paper and the video of their presentation.

Read more  

VB2019 video: Discretion in APT: recent APT attack on crypto exchange employees

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, LINE's HeungSoo Kang explained how cryptocurrency exchanges had been attacked using Firefox zero-days. Today, we publish the video of his presentation.

Read more  

VB2019 paper: DNS on fire

Posted by   Martijn Grooten on   Nov 7, 2019

In a paper presented at VB2019, Cisco Talos researchers Warren Mercer and Paul Rascagneres looked at two recent attacks against DNS infrastructure: DNSpionage and Sea Turtle. Today we publish their paper and the recording of their presentation.

Read more  

German Dridex spam campaign is unfashionably large

Posted by   Martijn Grooten on   Nov 6, 2019

VB has analysed a malicious spam campaign targeting German-speaking users with obfuscated Excel malware that would likely download Dridex but that mostly stood out through its size.

Read more  

Paper: Dexofuzzy: Android malware similarity clustering method using opcode sequence

Posted by   Martijn Grooten on   Nov 5, 2019

We publish a paper by researchers from ESTsecurity in South Korea, who describe a fuzzy hashing algorithm for clustering Android malware datasets.

Read more  

Emotet continues to bypass many email security products

Posted by   Martijn Grooten on   Nov 4, 2019

Having returned from a summer hiatus, Emotet is back targeting inboxes and, as seen in the VBSpam test lab, doing a better job than most other malicious campaigns at bypassing email security products.

Read more  

VB2019 paper: We need to talk - opening a discussion about ethics in infosec

Posted by   Martijn Grooten on   Nov 1, 2019

Those working in the field of infosec are often faced with ethical dilemmas that are impossible to avoid. Today, we publish a VB2019 paper by Kaspersky researcher Ivan Kwiatkowski looking at ethics in infosec as well as the recording of Ivan's presentation.

Read more  

Stalkerware poses particular challenges to anti-virus products

Posted by   Martijn Grooten on   Oct 31, 2019

Malware used in domestic abuse situations is a growing threat, and the standard way for anti-virus products to handle such malware may not be good enough. But that doesn't mean there isn't an important role for anti-virus to play.

Read more  

Search blog

October issue of VB published

The October issue of Virus Bulletin is now available for subscribers to download.
The October issue of Virus Bulletin is now available for subscribers to download. The October 2008 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2008/10/october-issue-vb-published/

McAfee to buy Secure Computing

Acquisition deal valued at $465m.
Acquisition deal valued at $465m.McAfee has announced its official agreement to purchase network security firm Secure Computing Corp. in a deal worth a whopping $465 million. The… https://www.virusbulletin.com/blog/2008/09/mcafee-buy-secure-computing/

Free speech argument overturns AOL spammer conviction

Virginia court upholds notorious Jaynes' right to express himself in bulk.
Virginia court upholds notorious Jaynes' right to express himself in bulk. Infamous AOL spammer Jeremy Jaynes, convicted of a massive spamming campaign targeting AOL users in 2004,… https://www.virusbulletin.com/blog/2008/09/free-speech-argument-overturns-aol-spammer-conviction/

Last-minute papers announced for VB2008

Schedule for hot-topic technical 'turbo' talks announced.
Schedule for hot-topic technical 'turbo' talks announced. VB has unveiled the schedule for a series of up-to-the-minute technical presentations at the VB2008 conference which takes… https://www.virusbulletin.com/blog/2008/09/last-minute-papers-announced/

Four critical updates in Patch Tuesday release

Monthly security update small but vital.
Monthly security update small but vital.Microsoft has released its monthly 'Patch Tuesday' batch of security updates, with only four items on the list but all of them marked… https://www.virusbulletin.com/blog/2008/09/four-critical-updates-patch-tuesday-release/

Tough weekend for AV giants as FPs and DNS issues hit

Trend false alert cripples users' systems, Sophos sites taken out by DNS mixup.
Trend false alert cripples users' systems, Sophos sites taken out by DNS mixup. Two of the larger security firms, Trend Micro and Sophos, had a busy weekend cleaning up after… https://www.virusbulletin.com/blog/2008/09/tough-weekend-av-giants-fps-and-dns-issues-hit/

Google shows off in-house browser beta

Open-source 'Chrome' promises security as well as efficiency.
Open-source 'Chrome' promises security as well as efficiency. Ever-expanding web giant Google has released an early version of its own browser, developed in house but under… https://www.virusbulletin.com/blog/2008/09/google-shows-house-browser-beta/

AV-Test release latest results

Major test of suite products completed
Major test of suite products completed Independent testing body AV-Test.org has released the results of a major comparative of suite products, with many vendors' 2009 editions… https://www.virusbulletin.com/blog/2008/09/av-test-release-latest-results/

September

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2008/09/

September issue of VB published

The September issue of Virus Bulletin is now available for subscribers to download.
The September issue of Virus Bulletin is now available for subscribers to download. The September 2008 issue of Virus Bulletin is now available for subscribers to browse online… https://www.virusbulletin.com/blog/2008/09/september-issue-vb-published/

Malware reaches space station

Autorun worm found on non-critical systems.
Autorun worm found on non-critical systems. US space agency NASA has confirmed reports that laptops in use on the international space station have been found to have been infected… https://www.virusbulletin.com/blog/2008/08/malware-reaches-space-station/

Best Western database hack exposes info on 8m customers

Hotel chain data heist latest in string of major security leaks.
Hotel chain data heist latest in string of major security leaks. The global hotel chain Best Western has had its network security breached, leading to full details of thousands of… https://www.virusbulletin.com/blog/2008/08/best-western-database-hack-exposes-info-8m-customers/

AMTSO releases draft guidelines for public comment

First major publication emerges from testing standards body.
First major publication emerges from testing standards body. The Anti-Malware Testing Standards Organization, the global body set up to improve and support the testing of security… https://www.virusbulletin.com/blog/2008/08/amtso-releases-draft-guidelines-public-comment/

Latest VB100 announced

September 2nd deadline set for Windows Server 2008 test
September 2nd deadline set for Windows Server 2008 testVB has issued a call for submissions for the latest VB100 comparative review, which will test the performance of products… https://www.virusbulletin.com/blog/2008/08/latest-announced/

Symantec to acquire PC Tools

Industry giant adds spyware specialist to growing portfolio.
Industry giant adds spyware specialist to growing portfolio. Security industry behemoth Symantec has announced the planned acquisition of PC Tools, the Australia-based company… https://www.virusbulletin.com/blog/2008/08/symantec-acquire-pc-tools/

Net threats cost US $8.5 billion in two years

Study measures scale of scamming and other web worries.
Study measures scale of scamming and other web worries. US consumer watchdog body Consumer Reports have released their annual 'State of the Net' study, finding a noticeable decline… https://www.virusbulletin.com/blog/2008/08/net-threats-cost-us-8-5-billion-two-years/

Malware writing teacher revives old rows

College instructor claims to be fighting industry monopoly.
College instructor claims to be fighting industry monopoly. As announced to much controversy last year, a course in computer security at Sonoma State University, California, is… https://www.virusbulletin.com/blog/2008/08/malware-writing-teacher-revives-old-rows/

August

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2008/08/

McAfee buys data loss firm Reconnex

$46 million acquisition announced as strong profit report released.
$46 million acquisition announced as strong profit report released.McAfee has announced its official agreement to purchase privately owned data loss prevention firm Reconnex, in a… https://www.virusbulletin.com/blog/2008/08/mcafee-buys-data-loss-firm-reconnex/

DNS flaw exploitation danger growing

Slow patchers targeted by sophisticated attacks.
Slow patchers targeted by sophisticated attacks. The serious vulnerability in the implementation of DNS systems has been targeted by malicious attacks, as security watchers have… https://www.virusbulletin.com/blog/2008/08/dns-flaw-exploitation-danger-growing/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.