VB Blog

VB2021 localhost call for papers: a great opportunity

Posted by   Virus Bulletin on   Mar 17, 2021

VB2021 localhost presents an exciting opportunity to share your research with an even wider cross section of the IT security community around the world than usual, without having to take time out of your work schedule (or budget) to travel.

Read more  

New article: Excel Formula/Macro in .xlsb?

Posted by   Virus Bulletin on   Mar 2, 2021

In a follow-up to an article published last week, Kurt Natvig takes us through the analysis of a new malicious sample using the .xlsb file format.

Read more  

New article: Decompiling Excel Formula (XF) 4.0 malware

Posted by   Virus Bulletin on   Feb 23, 2021

In a new article, researcher Kurt Natvig takes a close look at XF 4.0 malware.

Read more  

The Bagsu banker case - presentation

Posted by   Virus Bulletin on   Jan 29, 2021

At VB2019, CSIS researcher Benoît Ancel spoke about a quiet banking trojan actor that has been targeting German users since at least 2014.

Read more  

VB2021 call for papers - now open, to all!

Posted by   Virus Bulletin on   Jan 19, 2021

The call for papers for VB2021 is now open and we want to hear from you - we're planning for flexible presentation formats, so everyone is encouraged to submit, regardless of whether or not you know at this stage whether you'll be able to travel to Prague!

Read more  

In memoriam: Yonathan Klijnsma

Posted by   Virus Bulletin on   Jan 11, 2021

We were very sorry to learn of the passing of researcher Yonathan Klijnsma last week. Here, former VB Editor Martijn Grooten shares his memories of a talented researcher and a very kind person: this month, infosec lost a really good one.

Read more  

VB2020 localhost videos available on YouTube

Posted by   Virus Bulletin on   Jan 8, 2021

VB has made all VB2020 localhost presentations available on the VB YouTube channel, so you can now watch - and share - any part of the conference freely and without registration.

Read more  

VB2020 presentation & paper: 2030: backcasting the potential rise and fall of cyber threat intelligence

Posted by   Virus Bulletin on   Dec 8, 2020

At VB2020 localhost, threat intelligence consultant Jamie Collier used the analytical technique of backcasting to look at the rise and fall of the cyber threat intelligence industry.

Read more  

VB2020 presentation: Behind the Black Mirror: simulating attacks with mock C2 servers

Posted by   Virus Bulletin on   Dec 4, 2020

At VB2020 localhost, Carbon Black's Scott Knight presented an approach he and his colleagues have taken to more realistically simulate malware attacks.

Read more  

VB2020 presentation & paper: Advanced Pasta Threat: mapping threat actor usage of open-source offensive security tools

Posted by   Virus Bulletin on   Dec 2, 2020

At VB2020, researcher Paul Litvak revealed how he put together a comprehensive map of threat actor use of open-source offensive security tools.

Read more  

Search blog

Spammer's free speech defence fails

Appeal against conviction turned down.
Appeal against conviction turned down. US spammer Jeremy Jaynes, the first spammer convicted in a felony case, has had his last appeal against the conviction, brought on freedom of… https://www.virusbulletin.com/blog/2008/03/spammer-s-free-speech-defence-fails/

Cybercriminals charged in New Zealand, Korea

Law closes in on alleged botnet master and rogue anti-spyware maker.
Law closes in on alleged botnet master and rogue anti-spyware maker. Police in New Zealand have charged an 18-year-old in connection with a botnet he is suspected of building and… https://www.virusbulletin.com/blog/2008/03/cybercriminals-charged-new-zealand-korea/

'Search engines should do more to fight malware'

85% of users think that search engines should be doing more.
85% of users think that search engines should be doing more. According to a recent poll, 85% of visitors to the VB website think that search engines should be doing more to fight… https://www.virusbulletin.com/blog/2008/03/search-engines-should-do-more-fight-malware/

Showy malware pushes rogue anti-malware product

MonaRonaDona trojan leads searchers to remover scam.
MonaRonaDona trojan leads searchers to remover scam. An infection which advertises its presence using the name 'MonaRonaDona' is leading victims to search for a cure - and many of… https://www.virusbulletin.com/blog/2008/03/showy-malware-pushes-rogue-anti-malware-product/

March issue of VB published

The March issue of Virus Bulletin is now available for subscribers to download.
The March issue of Virus Bulletin is now available for subscribers to download. The March 2008 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2008/03/march-issue-vb-published/

March

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2008/03/

Gmail CAPTCHA cracked

Twenty per cent success rate sufficient to create thousands of spam accounts.
Twenty per cent success rate sufficient to create thousands of spam accounts.Gmail has become the latest free webmail service to have its CAPTCHAs cracked by spammers. Following… https://www.virusbulletin.com/blog/2008/02/gmail-captcha-cracked/

Trend Micro buys email encryption firm

UK company taken over by security giant.
UK company taken over by security giant. Global security superpower Trend Micro has invested in a small email encryption firm based in Bristol, UK. The company, Identum, emerged… https://www.virusbulletin.com/blog/2008/02/trend-micro-buys-email-encryption-firm/

Vista SP1 clashing with AV products

Service Pack causing issues for several security suites.
Service Pack causing issues for several security suites.Microsoft has released details of several software products that are known to have problems running in conjunction with… https://www.virusbulletin.com/blog/2008/02/vista-sp1-clashing-av-products/

Malware going local

Report sees trend toward greater localisation of threats.
Report sees trend toward greater localisation of threats.McAfee's latest Sage report focuses on increased localisation in malware, with spam, phishing and malcode all showing great… https://www.virusbulletin.com/blog/2008/02/malware-going-local/

Botnet-herding team arrested in Quebec

Gang held for managing million-machine zombie net.
Gang held for managing million-machine zombie net. Canadian police have announced the arrests of up to 17 people in Quebec, in connection with a major botnet operation thought to… https://www.virusbulletin.com/blog/2008/02/botnet-herding-team-arrested-quebec/

ITV site carried scareware ads

Rogue security product pushed by ads on several UK TV sites.
Rogue security product pushed by ads on several UK TV sites. Several UK television-related websites, including those of major broadcaster ITV and listings guide Radio Times, have… https://www.virusbulletin.com/blog/2008/02/itv-site-carried-scareware-ads/

Habbo trojan steals passwords

Extension decorates your room... with malware.
Extension decorates your room... with malware. A trojan has been discovered that masquerades as an extension to social networking site Habbo, formerly known as Habbo Hotel. The… https://www.virusbulletin.com/blog/2008/02/habbo-trojan-steals-passwords/

Vish implanted in phishing warning

Doctored bank alert includes phony phone number.
Doctored bank alert includes phony phone number. A spammed-out email has been spotted posing as a phishing warning from US credit union Kessler Federal, with some very sensible… https://www.virusbulletin.com/blog/2008/02/vish-implanted-phishing-warning/

VB reveals new website design

Glossary, comments and mobile website among new additions.
Glossary, comments and mobile website among new additions. Regular visitors to VB may have noticed that the site has a fresh new look as well as some changes and additions to its… https://www.virusbulletin.com/blog/2008/02/vb-reveals-new-website-design/

Japanese super-spammer arrested

Tokyo man sent 2.2 billion emails.
Tokyo man sent 2.2 billion emails. A 25-year-old man was arrested in Tokyo last week, suspected of sending 2.2 billion spam emails. Yukio Shiina was picked up by police on Friday,… https://www.virusbulletin.com/blog/2008/02/japanese-super-spammer-arrested/

VB100 test on Windows Vista SP1 announced

Products to be tested on new update to Vista platform.
Products to be tested on new update to Vista platform. VB has issued a call for submissions for the latest VB100 comparative review, which will test the performance of products… https://www.virusbulletin.com/blog/2008/02/test-windows-vista-sp1-announced/

Microsoft research revives 'friendly worm' ideas

Malware techniques proposed as update-spreading method.
Malware techniques proposed as update-spreading method. A group of Microsoft researchers have put forward proposals to use worm techniques to spread patches and updates across… https://www.virusbulletin.com/blog/2008/02/microsoft-research-revives-friendly-worm-ideas/

Software and OS developers should take responsibility for security

While 51% of users say computer security should be the responsibility of the user, nearly a third of users feel it is up to software and OS developers.
While 51% of users say computer security should be the responsibility of the user, nearly a third of users feel it is up to software and OS developers. According to a recent poll,… https://www.virusbulletin.com/blog/2008/02/software-and-os-developers-should-take-responsibility-security/

Phishers phishing phishers' phishes

Scam software secretly sending stolen data to creators.
Scam software secretly sending stolen data to creators.Phishing researchers have uncovered code buried in phishing software kits, sold by developers to less technically aware… https://www.virusbulletin.com/blog/2008/02/phishers-phishing-phishers-phishes/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.