VB Blog

VB2021 localhost call for papers: a great opportunity

Posted by   Virus Bulletin on   Mar 17, 2021

VB2021 localhost presents an exciting opportunity to share your research with an even wider cross section of the IT security community around the world than usual, without having to take time out of your work schedule (or budget) to travel.

Read more  

New article: Excel Formula/Macro in .xlsb?

Posted by   Virus Bulletin on   Mar 2, 2021

In a follow-up to an article published last week, Kurt Natvig takes us through the analysis of a new malicious sample using the .xlsb file format.

Read more  

New article: Decompiling Excel Formula (XF) 4.0 malware

Posted by   Virus Bulletin on   Feb 23, 2021

In a new article, researcher Kurt Natvig takes a close look at XF 4.0 malware.

Read more  

The Bagsu banker case - presentation

Posted by   Virus Bulletin on   Jan 29, 2021

At VB2019, CSIS researcher Benoît Ancel spoke about a quiet banking trojan actor that has been targeting German users since at least 2014.

Read more  

VB2021 call for papers - now open, to all!

Posted by   Virus Bulletin on   Jan 19, 2021

The call for papers for VB2021 is now open and we want to hear from you - we're planning for flexible presentation formats, so everyone is encouraged to submit, regardless of whether or not you know at this stage whether you'll be able to travel to Prague!

Read more  

In memoriam: Yonathan Klijnsma

Posted by   Virus Bulletin on   Jan 11, 2021

We were very sorry to learn of the passing of researcher Yonathan Klijnsma last week. Here, former VB Editor Martijn Grooten shares his memories of a talented researcher and a very kind person: this month, infosec lost a really good one.

Read more  

VB2020 localhost videos available on YouTube

Posted by   Virus Bulletin on   Jan 8, 2021

VB has made all VB2020 localhost presentations available on the VB YouTube channel, so you can now watch - and share - any part of the conference freely and without registration.

Read more  

VB2020 presentation & paper: 2030: backcasting the potential rise and fall of cyber threat intelligence

Posted by   Virus Bulletin on   Dec 8, 2020

At VB2020 localhost, threat intelligence consultant Jamie Collier used the analytical technique of backcasting to look at the rise and fall of the cyber threat intelligence industry.

Read more  

VB2020 presentation: Behind the Black Mirror: simulating attacks with mock C2 servers

Posted by   Virus Bulletin on   Dec 4, 2020

At VB2020 localhost, Carbon Black's Scott Knight presented an approach he and his colleagues have taken to more realistically simulate malware attacks.

Read more  

VB2020 presentation & paper: Advanced Pasta Threat: mapping threat actor usage of open-source offensive security tools

Posted by   Virus Bulletin on   Dec 2, 2020

At VB2020, researcher Paul Litvak revealed how he put together a comprehensive map of threat actor use of open-source offensive security tools.

Read more  

Search blog

Spammers turn to DoubleClick for open redirect

Loophole in Google's AdSense solved, but new flaw quickly uncovered.
Loophole in Google's AdSense solved, but new flaw quickly uncovered. The good name of web giant Google continues to be a popular source of legitimacy among spammers, despite their… https://www.virusbulletin.com/blog/2008/06/spammers-turn-doubleclick-open-redirect/

June issue of VB published

The June issue of Virus Bulletin is now available for subscribers to download.
The June issue of Virus Bulletin is now available for subscribers to download. The June 2008 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2008/06/june-issue-vb-published/

June

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2008/06/

Flash exploit used to steal gaming passwords

Despite initial panic, threat no longer believed to a zero-day exploit.
Despite initial panic, threat no longer believed to a zero-day exploit. In the past few days, thousands of websites have indirectly been serving malicious Adobe Flash (.SWF) files.… https://www.virusbulletin.com/blog/2008/05/flash-exploit-used-steal-gaming-passwords/

Almost half of users think virus-writing contests are a good idea

Shocking survey results disappoint security experts.
Shocking survey results disappoint security experts. Nearly half of the respondents in a Virus Bulletin poll said they thought that virus-writing contests are a useful way of… https://www.virusbulletin.com/blog/2008/05/almost-half-users-think-virus-writing-contests-are-good-idea/

MySpace wins record payout in case against spammers

'Spam Kings' Wallace and Rines fined maximum amount under federal law.
'Spam Kings' Wallace and Rines fined maximum amount under federal law. Social networking site MySpace has been awarded a record $230 million in a lawsuit it filed against… https://www.virusbulletin.com/blog/2008/05/myspace-wins-record-payout-case-against-spammers/

Yahoo! searchers to get McAfee site advice

SiteAdvisor data to help check security of search results.
SiteAdvisor data to help check security of search results. Search engine giant Yahoo! has announced a deal with McAfee to incorporate site security ratings from the firm's… https://www.virusbulletin.com/blog/2008/05/yahoo-searchers-get-mcafee-site-advice/

Security experts gather in Europe

Anti-malware insights pooled at AMTSO, CARO and EICAR meetings.
Anti-malware insights pooled at AMTSO, CARO and EICAR meetings. Many of the world's leading anti-malware and security experts came together in the past week, at a string of… https://www.virusbulletin.com/blog/2008/05/security-experts-gather-europe/

Users divided about customer liability for online fraud losses

Many users worried about lack of knowledge.
Many users worried about lack of knowledge. In a poll of more than 700 visitors to the VB website, users were divided on whether or not it is fair for online banking customers to… https://www.virusbulletin.com/blog/2008/05/users-divided-about-customer-liability-online-fraud-losses/

May

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2008/05/

May issue of VB published

The May issue of Virus Bulletin is now available for subscribers to download.
The May issue of Virus Bulletin is now available for subscribers to download. The May 2008 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2008/05/may-issue-vb-published/

Cracked CAPTCHAs used to create malicious blogs

Blogs on Google's blogging system redirect to spam sites.
Blogs on Google's blogging system redirect to spam sites.Spammers are using botnets to mass-create phony blogs on Google's free Blogger system, with the phony entries redirecting… https://www.virusbulletin.com/blog/2008/04/cracked-captchas-used-create-malicious-blogs/

Mass attack infects over half a million web pages

United Nations and UK Government sites among those infected by SQL injection.
United Nations and UK Government sites among those infected by SQL injection. Hackers have managed to insert malicious code into hundreds of thousands of websites, making their… https://www.virusbulletin.com/blog/2008/04/mass-attack-infects-over-half-million-web-pages/

China-Tibet row spills over into malware attacks

Both sides of debate targeted to spread malicious code.
Both sides of debate targeted to spread malicious code. With the political row over China's involvement in Tibet continuing to make the headlines, cybercriminals have been as quick… https://www.virusbulletin.com/blog/2008/04/china-tibet-row-spills-over-malware-attacks/

More than 50% of users regularly double-check for false positive spam filtering

Only 12% of users trust their spam filter sufficiently not to bother sifting through spam folder.
Only 12% of users trust their spam filter sufficiently not to bother sifting through spam folder. In a poll of more than 1,000 visitors to the VB website, 52% of users say they… https://www.virusbulletin.com/blog/2008/04/more-50-users-regularly-double-check-false-positive-spam-filtering/

Phishing on rise, but anti-phishers fighting back

As UK banking body reports major increase in phishes, PayPal unveils blocking strategy.
As UK banking body reports major increase in phishes, PayPal unveils blocking strategy. A report from the UK payments industry association APACS has shown a dramatic increase in… https://www.virusbulletin.com/blog/2008/04/phishing-rise-anti-phishers-fighting-back/

Latest Patch Tuesday update released

Microsoft announces five 'critical' vulnerabilities need fixing.
Microsoft announces five 'critical' vulnerabilities need fixing.Microsoft has issued its monthly 'Patch Tuesday' security bulletin, with five 'critical' and three 'important'… https://www.virusbulletin.com/blog/2008/04/latest-patch-tuesday-update-released/

'Kraken' monster botnet causing controversy

As latest botnet scare debated, Storm keeps on blowing.
As latest botnet scare debated, Storm keeps on blowing. Recent reports of a massive botnet, apparently sneaking its trojans past security software and far outnumbering better-known… https://www.virusbulletin.com/blog/2008/04/kraken-monster-botnet-causing-controversy/

HP ships infected USB keys

Autorun worms found on batch of server setup devices.
Autorun worms found on batch of server setup devices. A batch of USB thumb drives containing software intended to assist in the setup of servers have been found to contain some… https://www.virusbulletin.com/blog/2008/04/hp-ships-infected-usb-keys/

Google Groups and Blogspot used to serve malware

Company finds own IP address to be serving most malware.
Company finds own IP address to be serving most malware.Malware writers have created thousands of Google Groups with the sole purpose of serving malware, Sunbelt reports. On the… https://www.virusbulletin.com/blog/2008/04/google-groups-and-blogspot-used-serve-malware/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.