VB Blog

VB2020 localhost call for last minute papers: a unique opportunity

Posted by   Virus Bulletin on   Aug 10, 2020

Why VB2020 localhost presents a unique opportunity for you to share your research with security experts around the globe.

Read more  

VB2020 localhost call for last-minute papers now open!

Posted by   Virus Bulletin on   Jul 31, 2020

The call for last-minute papers for VB2020 localhost is now open. Submit before 17 August to have your paper considered for one of the nine slots reserved for 'hot' research!

Read more  

Announcing... VB2020 localhost

Posted by   Virus Bulletin on   Jul 29, 2020

Announcing VB2020 localhost: the carbon neutral, budget neutral VB conference!

Read more  

VB2019 paper: APT cases exploiting vulnerabilities in region-specific software

Posted by   Virus Bulletin on   May 4, 2020

At VB2019, JPCERT/CC's Shusei Tomonaga and Tomoaki Tani presented a paper on attacks that exploit vulnerabilities in software used only in Japan, using malware that is unique to Japan. Today we publish both their paper and the recording of their presentation.

Read more  

New paper: Detection of vulnerabilities in web applications by validating parameter integrity and data flow graphs

Posted by   Helen Martin on   Apr 30, 2020

In a follow-up to a paper presented at VB2019, Prismo Systems researchers Abhishek Singh and Ramesh Mani detail algorithms that can be used to detect SQL injection in stored procedures, persistent cross-site scripting (XSS), and server‑side request forgery (SSRF) by instrumenting web applications.

Read more  

VB2020 programme announced

Posted by   Virus Bulletin on   Apr 16, 2020

VB is pleased to reveal the details of an interesting and diverse programme for VB2020, the 30th Virus Bulletin International Conference.

Read more  

VB2019 paper: Cyber espionage in the Middle East: unravelling OSX.WindTail

Posted by   Virus Bulletin on   Apr 2, 2020

At VB2019 in London, Jamf's Patrick Wardle analysed the WindTail macOS malware used by the WindShift APT group, active in the Middle East. Today we publish both Patrick's paper and the recording of his presentation.

Read more  

VB2019 paper: 2,000 reactions to a malware attack – accidental study

Posted by   Virus Bulletin on   Mar 24, 2020

At VB2019 cybercrime journalist and researcher Adam Haertlé presented an analysis of almost 2000 unsolicited responses sent by victims of a malicious email campaign. Today we publish both his paper and the recording of his presentation.

Read more  

VB2019 paper: Why companies need to focus on a problem they do not know they have

Posted by   Virus Bulletin on   Mar 20, 2020

Often unbeknownst to network administrators, many company networks are used to download child sexual abuse material. In a paper presented at VB2019 in London, NetClean’s Richard Matti and Anna Creutz looked at this problem and what companies can do, ultimately, to help safeguard children. Today we publish their full paper.

Read more  

VB2020 update - currently business as usual

Posted by   Virus Bulletin on   Mar 16, 2020

Here at VB we are keeping a close eye on the global situation regarding the COVID-19 outbreak and the various travel restrictions and health advice, but in the meantime planning and arrangements for VB2020 are going ahead as usual, including the selection of papers.

Read more  

Search blog

More phishers and spammers face prison time

US, Dutch and Japanese police crack down on online bad guys.
US, Dutch and Japanese police crack down on online bad guys. Of a series of arrests and convictions this week, the most spectacular headlines centre on the potential 101-year… https://www.virusbulletin.com/blog/2007/01/more-phishers-and-spammers-face-prison-time/

Wide support for spyware teacher

Malware infestation alleged at root of porn conviction.
Malware infestation alleged at root of porn conviction. A Connecticut teacher, recently convicted of morals offences after her laptop displayed a range of pornographic sites to a… https://www.virusbulletin.com/blog/2007/01/wide-support-spyware-teacher/

Sony rootkit settlement costs escalate

Use of hidden DRM software costs company $5.75m.
Use of hidden DRM software costs company $5.75m. Sony BMG Music Entertainment's ill-advised use of hidden digital rights management (DRM) software on its CDs in late 2005 has cost… https://www.virusbulletin.com/blog/2007/01/sony-rootkit-settlement-costs-escalate/

Government agencies take anti-phishing action

Spear-phishing awareness training and testing for staff.
Spear-phishing awareness training and testing for staff. Personnel working for the US Coast Guard have been ordered to take phishing awareness training, while other US government… https://www.virusbulletin.com/blog/2007/01/government-agencies-take-anti-phishing-action/

2007

Latest news from the anti-virus industry provided by independent anti-virus advisors, Virus Bulletin
NewsMagic lanterns shine at terroristsVirus Bulletin finds 40% of users think governments should write viruses to bug terrorists.19 December 2007$3.2 billion lost in phishing… https://www.virusbulletin.com/blog/2007/

MMS mobile phone exploit released

Buffer overflow vulnerability in MMS SMIL exploited.
Buffer overflow vulnerability in MMS SMIL exploited. Last month saw the publication of proof-of-concept code exploiting a vulnerability in the popular mobile phone Multimedia… https://www.virusbulletin.com/blog/2007/01/mms-mobile-phone-exploit-released/

UK anti-spam victory for Microsoft

Lawsuit won against UK spammer.
Lawsuit won against UK spammer. Microsoft has won a lawsuit against a spammer based in the UK. Microsoft launched legal proceedings against 37-year-old Paul Martin McDonald after… https://www.virusbulletin.com/blog/2007/01/uk-anti-spam-victory-microsoft/

January

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2007/01/

BitDefender vulnerability disclosed

Details released of overflow issue reported and patched.
Details released of overflow issue reported and patched.BitDefender and several security-watching sites have unveiled details of a serious overflow vulnerability in the parsing of… https://www.virusbulletin.com/blog/2006/12/bitdefender-vulnerability-disclosed/

'Big Yellow' worm exploits slow Symantec patchers

Worm spotted targeting 6-month-old vulnerability in AV products.
Worm spotted targeting 6-month-old vulnerability in AV products. An alert has been issued by eEye Digital Security researchers for a new worm, which they have called 'Big Yellow',… https://www.virusbulletin.com/blog/2006/12/big-yellow-worm-exploits-slow-symantec-patchers/

UK taxman warns of rebate phish

Mails promising tax refund just another scam.
Mails promising tax refund just another scam.Her Majesty's Revenue and Customs (HMRC), the UK taxation authority, has issued a warning regarding a phishing campaign using its name.… https://www.virusbulletin.com/blog/2006/12/uk-taxman-warns-rebate-phish/

Microsoft wins block on spam list seller

Court bars bulk email address sales site from further business.
Court bars bulk email address sales site from further business.Microsoft has won a judgement against a UK man accused of selling lists of email addresses for the purpose of… https://www.virusbulletin.com/blog/2006/12/microsoft-wins-block-spam-list-seller/

UK phishing up 8000% in two years, says FSA

Government report shows massive rise in scams.
Government report shows massive rise in scams. A report presented to the UK government by the Financial Services Authority (FSA), the UK's financial watchdog organisation,… https://www.virusbulletin.com/blog/2006/12/uk-phishing-8000-two-years-says-fsa/

Yet more Word zero-day woes

Possible third vulnerability in popular software exploited.
Possible third vulnerability in popular software exploited. Reports are coming in of a new exploit for Microsoft's Word word processing software, amid speculation that the attack… https://www.virusbulletin.com/blog/2006/12/yet-more-word-zero-day-woes/

European mailer society signs spyware charter

Direct marketeers' association adopts code of good behaviour.
Direct marketeers' association adopts code of good behaviour. The Federation of European Direct and Interactive Marketing (FEDMA), a common-interest and self-regulatory body for… https://www.virusbulletin.com/blog/2006/12/european-mailer-society-signs-spyware-charter/

US Postal Service accused of spamming

Customer email campaign in breach of CAN-SPAM regulations.
Customer email campaign in breach of CAN-SPAM regulations. The US Postal Service (USPS) has come under fire from anti-spam activists after a mass email campaign promoting a new… https://www.virusbulletin.com/blog/2006/12/us-postal-service-accused-spamming/

Putting a price on spam

Email-forwarding system lets users set a fee to let spam through.
Email-forwarding system lets users set a fee to let spam through. Email-forwarding system Boxbe has come up with a new way around the spam problem - by letting its users set a fee… https://www.virusbulletin.com/blog/2006/12/putting-price-spam/

Ransom attacks hit webmail

Accounts held hostage by data-stealing extortionists.
Accounts held hostage by data-stealing extortionists. Following the wave of 'ransomware' attacks first spotted in the summer of 2005, online extortionists have picked another… https://www.virusbulletin.com/blog/2006/12/ransom-attacks-hit-webmail/

Patch Tuesday leaves Word open to attack

Old and new zero-day vulnerabilities to remain unpatched.
Old and new zero-day vulnerabilities to remain unpatched.Microsoft's monthly Patch Tuesday update release sees seven security patches for Windows operating systems and products,… https://www.virusbulletin.com/blog/2006/12/patch-tuesday-leaves-word-open-attack/

Sophos vulnerabilities found, patched

Fixes issued for archive handling problems.
Fixes issued for archive handling problems. Researchers working with Tipping Point's Zero Day Initiative (ZDI) program have released details of two vulnerabilities in the Sophos… https://www.virusbulletin.com/blog/2006/12/sophos-vulnerabilities-found-patched/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.