VB Blog

VB2018 paper: Fake News, Inc.

Posted by   Helen Martin on   Apr 25, 2019

A former reporter by profession, Andrew Brandt's curiosity was piqued when he came across what appeared at first glance to be the website of a small-town newspaper based in Illinois, but under scrutiny, things didn’t add up. At VB2018 he presented a paper in which he shared the results of his investigation of the site. Today, we publish his paper and the recording of his presentation.

Read more  

Paper: Alternative communication channel over NTP

Posted by   Martijn Grooten on   Apr 24, 2019

In a new paper published today, independent researcher Nikolaos Tsapakis writes about the possibilities of malware using NTP as a covert communication channel and how to stop this.

Read more  

VB2019 conference programme announced

Posted by   Martijn Grooten on   Apr 5, 2019

VB is excited to reveal the details of an interesting and diverse programme for VB2019, the 29th Virus Bulletin International Conference, which takes place 2-4 October in London, UK.

Read more  

VB2018 paper: Under the hood - the automotive challenge

Posted by   Martijn Grooten on   Mar 27, 2019

Car hacking has become a hot subject in recent years, and at VB2018 in Montreal, Argus Cyber Security's Inbar Raz presented a paper that provides an introduction to the subject, looking at the complex problem, examples of car hacks, and the challenges ahead. Today, we publish both Inbar's paper and the recording of his presentation.

Read more  

VB2018 paper and video: Android app deobfuscation using static-dynamic cooperation

Posted by   Martijn Grooten on   Mar 20, 2019

Static analysis and dynamic analysis each have their shortcomings as methods for analysing potentially malicious files. Today, we publish a VB2018 paper by Check Point researchers Yoni Moses and Yaniv Mordekhay, in which they describe a method that combines static and dynamic analysis to defeat app obfuscation in Android binaries. We also publish the video of their presentation.

Read more  

VB2019 call for papers closes this weekend

Posted by   Martijn Grooten on   Mar 15, 2019

The call for papers for VB2019 closes on 17 March, and while we've already received many great submissions, we still want more!

Read more  

Registration open for VB2019 ─ book your ticket now!

Posted by   Martijn Grooten on   Mar 13, 2019

Registration for VB2019, the 29th Virus Bulletin International Conference, is now open, with an early bird rate available until 1 July.

Read more  

The VB2019 call for papers is about ... papers

Posted by   Martijn Grooten on   Mar 8, 2019

When we are calling for papers for the Virus Bulletin conference as we are doing now, we really mean a written paper. But don't worry if you've never written a paper - we can help!

Read more  

VB2018 video: Adware is just malware with a legal department - how we reverse engineered OSX/Pirrit, received legal threats, and survived

Posted by   Martijn Grooten on   Mar 8, 2019

Amit Serper first analysed the OSX/Pirrit adware in 2016, highlighting some of its malware-like techniques, and soon afterwards started receiving legal threats from the company behind it. At VB2018 Amit gave a presentation in which he discussed both the adware and the legal threats he received for calling it malware. Today, we publish the video of Amit's presentation.

Read more  

VB2018 paper: Anatomy of an attack: detecting and defeating CRASHOVERRIDE

Posted by   Martijn Grooten on   Mar 5, 2019

In December 2016, the CRASHOVERRIDE malware framework was used to cause a blackout in Ukraine. At VB2018 in Montreal, Dragos researcher Joe Slowik presented a detailed paper on the framework, explaining how the malware works and how it targets various protocols used to operate the electric grid. Today we publish both Joe's paper and the recording of his presentation.

Read more  

Search blog

October issue of VB published

The October issue of Virus Bulletin is now available for subscribers to download.
The October issue of Virus Bulletin is now available for subscribers to download. The October 2007 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2007/10/october-issue-vb-published/

Phil makes anti-phishing education child's play

Researchers create game to raise awareness.
Researchers create game to raise awareness. Researchers at Carnegie Mellon University have created an interactive game designed to teach players how to identify phishing URLs and… https://www.virusbulletin.com/blog/2007/10/phil-makes-anti-phishing-education-child-s-play/

Another security hole found in GMail

Vulnerability latest in a growing list of holes in Google's web applications.
Vulnerability latest in a growing list of holes in Google's web applications. A significant security hole has been found in Google's web mail application GMail. Security… https://www.virusbulletin.com/blog/2007/09/another-security-hole-found-gmail/

Fujacks/Panda virus authors sentenced, offered job

Fujacks author put away for four years.
Fujacks author put away for four years. Four men who were charged last month with writing, selling and spreading the W32/Fujacks virus and worm (a.k.a. the 'Panda burning… https://www.virusbulletin.com/blog/2007/09/fujacks-panda-virus-authors-sentenced-offered-job/

Vulnerabilities closed in OpenOffice, StarOffice

Flaws patched in TIFF parsing code.
Flaws patched in TIFF parsing code. Security researchers at iDefense revealed last week that OpenOfficeversion 2.0.4 and earlier versions are vulnerable to maliciously crafted TIFF… https://www.virusbulletin.com/blog/2007/09/vulnerabilities-closed-openoffice-staroffice/

Microsoft files further adware patent

User behaviour monitors could be used to target ads.
User behaviour monitors could be used to target ads. Following a patent application disclosed some months ago, details have been released of another adware scheme patented by… https://www.virusbulletin.com/blog/2007/09/microsoft-files-further-adware-patent/

St. Petersburg US Consulate website hacked

Malware served by official government site.
Malware served by official government site. Web-watchers at Sophos have reported spotting malware hosted on the website of the US Consulate in St. Petersburg, using obfuscated… https://www.virusbulletin.com/blog/2007/09/st-petersburg-us-consulate-website-hacked/

Boot virus shipped on German laptops

Aged malware installed on batch of Vista systems.
Aged malware installed on batch of Vista systems. A consignment of laptops from German manufacturer Medion, sold through German and Danish branches of giant retail chain Aldi, have… https://www.virusbulletin.com/blog/2007/09/boot-virus-shipped-german-laptops/

VB2007 last-minute hot-topic papers revealed

Schedule for up-to-the-minute tech talks announced.
Schedule for up-to-the-minute tech talks announced.VB has unveiled the schedule for a series of up-to-the-minute technical presentations at the VB2007 conference next week (19-21… https://www.virusbulletin.com/blog/2007/09/last-minute-hot-topic-papers-revealed/

Quiet Patch Tuesday

Four flaws fixed in minimal security update.
Four flaws fixed in minimal security update.Microsoft's monthly 'Patch Tuesday' release of security updates for Windows and other software has been fairly quiet this month - with… https://www.virusbulletin.com/blog/2007/09/quiet-patch-tuesday/

Yahoo!-owned ad firm serves up trojans

Infectious flash adverts displayed on major sites.
Infectious flash adverts displayed on major sites. Advertising supplied by ad firm Right Media, a company bought out by web giant Yahoo! earlier this year after an initial… https://www.virusbulletin.com/blog/2007/09/yahoo-owned-ad-firm-serves-trojans/

AOL quietly drops free-to-all AV offering

Gratis software now for members only, old users may be at risk.
Gratis software now for members only, old users may be at risk. A month ago we reported on AOL's switch of providers for its free anti-virus software offering, from the… https://www.virusbulletin.com/blog/2007/09/aol-quietly-drops-free-all-av-offering/

New worm spreading via Skype

Multilingual malware posing as porn in chat messages.
Multilingual malware posing as porn in chat messages. VoIP and chat system Skype has been targeted by another worm, sending chat messages to harvested contacts posing as links to… https://www.virusbulletin.com/blog/2007/09/new-worm-spreading-skype/

Minor flaws patched in Sophos AV

Security vulnerabilities found and fixed.
Security vulnerabilities found and fixed. Two separate flaws have been reported in Sophos's anti-virus engine, affecting most of its product range and allowing security bypass and… https://www.virusbulletin.com/blog/2007/09/minor-flaws-patched-sophos-av/

Storm DDoS hits anti-scam sites

419 fighters attacked - NFL and TOR latest spam hooks.
419 fighters attacked - NFL and TOR latest spam hooks. The massive botnet amassed by the 'Storm' (Zhelatin/Nuwar/Dorf/etc.) attack continues to target new victims, with the TOR… https://www.virusbulletin.com/blog/2007/09/storm-ddos-hits-anti-scam-sites/

Kaspersky-Zango case heralded as groundbreaking

Judge sets precedent upholding users' rights to block badware.
Judge sets precedent upholding users' rights to block badware. A lawsuit brought by adware-pusher Zango against Kaspersky Lab was dismissed last week, with the judge in the case… https://www.virusbulletin.com/blog/2007/09/kaspersky-zango-case-heralded-groundbreaking/

Cybercrime rivals real-world crime rates

Researchers estimate 3 million online crimes committed in UK last year.
Researchers estimate 3 million online crimes committed in UK last year. A research group has issued a report estimating levels of cybercrime in the UK during 2006, finding that an… https://www.virusbulletin.com/blog/2007/09/cybercrime-rivals-real-world-crime-rates/

Spamhaus $11 million fine thrown out

Appeal court quashes earlier e360 compensation ruling.
Appeal court quashes earlier e360 compensation ruling. Anti-spam operation Spamhaus, previously ordered to pay $11 million to mass-mailing firm e360 Insight after refusing to… https://www.virusbulletin.com/blog/2007/09/spamhaus-11-million-fine-thrown-out/

China denies Pentagon hacking claims

'Hacked by Chinese' row rumbles on.
'Hacked by Chinese' row rumbles on. The Chinese government has vigorously denied accusations, made in a report in UK newspaper The Financial Times on Monday, that Chinese hackers… https://www.virusbulletin.com/blog/2007/09/china-denies-pentagon-hacking-claims/

MS gaining fast in AV-Comparatives tests

Detection rates up 7% in six months, more improvement predicted.
Detection rates up 7% in six months, more improvement predicted.AV-Comparatives have released the results of their latest test of detection rates, pitting 17 scanners already known… https://www.virusbulletin.com/blog/2007/09/ms-gaining-fast-av-comparatives-tests/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.