VB Blog

VB2018 paper: Fake News, Inc.

Posted by   Helen Martin on   Apr 25, 2019

A former reporter by profession, Andrew Brandt's curiosity was piqued when he came across what appeared at first glance to be the website of a small-town newspaper based in Illinois, but under scrutiny, things didn’t add up. At VB2018 he presented a paper in which he shared the results of his investigation of the site. Today, we publish his paper and the recording of his presentation.

Read more  

Paper: Alternative communication channel over NTP

Posted by   Martijn Grooten on   Apr 24, 2019

In a new paper published today, independent researcher Nikolaos Tsapakis writes about the possibilities of malware using NTP as a covert communication channel and how to stop this.

Read more  

VB2019 conference programme announced

Posted by   Martijn Grooten on   Apr 5, 2019

VB is excited to reveal the details of an interesting and diverse programme for VB2019, the 29th Virus Bulletin International Conference, which takes place 2-4 October in London, UK.

Read more  

VB2018 paper: Under the hood - the automotive challenge

Posted by   Martijn Grooten on   Mar 27, 2019

Car hacking has become a hot subject in recent years, and at VB2018 in Montreal, Argus Cyber Security's Inbar Raz presented a paper that provides an introduction to the subject, looking at the complex problem, examples of car hacks, and the challenges ahead. Today, we publish both Inbar's paper and the recording of his presentation.

Read more  

VB2018 paper and video: Android app deobfuscation using static-dynamic cooperation

Posted by   Martijn Grooten on   Mar 20, 2019

Static analysis and dynamic analysis each have their shortcomings as methods for analysing potentially malicious files. Today, we publish a VB2018 paper by Check Point researchers Yoni Moses and Yaniv Mordekhay, in which they describe a method that combines static and dynamic analysis to defeat app obfuscation in Android binaries. We also publish the video of their presentation.

Read more  

VB2019 call for papers closes this weekend

Posted by   Martijn Grooten on   Mar 15, 2019

The call for papers for VB2019 closes on 17 March, and while we've already received many great submissions, we still want more!

Read more  

Registration open for VB2019 ─ book your ticket now!

Posted by   Martijn Grooten on   Mar 13, 2019

Registration for VB2019, the 29th Virus Bulletin International Conference, is now open, with an early bird rate available until 1 July.

Read more  

The VB2019 call for papers is about ... papers

Posted by   Martijn Grooten on   Mar 8, 2019

When we are calling for papers for the Virus Bulletin conference as we are doing now, we really mean a written paper. But don't worry if you've never written a paper - we can help!

Read more  

VB2018 video: Adware is just malware with a legal department - how we reverse engineered OSX/Pirrit, received legal threats, and survived

Posted by   Martijn Grooten on   Mar 8, 2019

Amit Serper first analysed the OSX/Pirrit adware in 2016, highlighting some of its malware-like techniques, and soon afterwards started receiving legal threats from the company behind it. At VB2018 Amit gave a presentation in which he discussed both the adware and the legal threats he received for calling it malware. Today, we publish the video of Amit's presentation.

Read more  

VB2018 paper: Anatomy of an attack: detecting and defeating CRASHOVERRIDE

Posted by   Martijn Grooten on   Mar 5, 2019

In December 2016, the CRASHOVERRIDE malware framework was used to cause a blackout in Ukraine. At VB2018 in Montreal, Dragos researcher Joe Slowik presented a detailed paper on the framework, explaining how the malware works and how it targets various protocols used to operate the electric grid. Today we publish both Joe's paper and the recording of his presentation.

Read more  

Search blog

Phone phishes

Watch out for fake SMS messages.
Watch out for fake SMS messages. A sneaky new phishing technique emerged last month, in which initial contact is made with victims via SMS text message. In the attack, an SMS… https://www.virusbulletin.com/blog/2006/07/phone-phishes/

False positive reduction

Amendment to VB's June Windows XP comparative review.
Amendment to VB's June Windows XP comparative review. In Virus Bulletin's June 2006 Windows XP comparative review (see VB, June 2006, p.11), VB reported that Alwil's product… https://www.virusbulletin.com/blog/2006/07/false-positive-reduction/

July issue of VB published

The July issue of Virus Bulletin is now available for subscribers to download.
The July issue of Virus Bulletin is now available for subscribers to download. The July 2006 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2006/07/july-issue-vb-published/

New faces

VB welcomes new Technical Consultant.
VB welcomes new Technical Consultant. VB is pleased to announce the arrival of a new team member. Following the departure of Matt Ham last month, John Hawes is joining us to take… https://www.virusbulletin.com/blog/2006/07/new-faces/

July

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/07/

m00p group members arrested

Three members of virus-writing gang held.
Three members of virus-writing gang held. Three members of a malware-writing group were arrested last month following investigations in Finland and the UK. The three men - a… https://www.virusbulletin.com/blog/2006/07/m00p-group-members-arrested/

Gone phishing in Japan

Japan's first crackdown on organized phishing.
Japan's first crackdown on organized phishing. Police in Kyoto have arrested eight men in Japan's first crackdown on organized phishing. The men are suspected of belonging to a… https://www.virusbulletin.com/blog/2006/06/gone-phishing-japan/

Symantec vulnerability discovered - and fixed

Buffer overflow vulnerability found in corporate AV software.
Buffer overflow vulnerability found in corporate AV software.Symantec was quick to respond late last month to the discovery of a potentially critical vulnerability in the latest… https://www.virusbulletin.com/blog/2006/06/symantec-vulnerability-discovered-and-fixed/

Blue Frog croaks but may rise again

Open source project to create anti-spam opt-out tool based on the defunct Blue Frog service.
Open source project to create anti-spam opt-out tool based on the defunct Blue Frog service. Last month, Blue Frog, the anti-spam service offered by Blue Security, was forced to… https://www.virusbulletin.com/blog/2006/06/blue-frog-croaks-may-rise-again/

June issue of VB published

The June issue of Virus Bulletin is now available for subscribers to download.
The June issue of Virus Bulletin is now available for subscribers to download. The June 2006 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2006/06/june-issue-vb-published/

June

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/06/

OneCare goes live

Microsoft anti-virus goes on general release.
Microsoft anti-virus goes on general release.Microsoft's anti-virus software Windows Live OneCare is due to go on general release this month. OneCare, which has been available… https://www.virusbulletin.com/blog/2006/06/onecare-goes-live/

Bank takes steps to increase customer security

Bank signs deal with AV vendor in an attempt to stop phishers in their tracks.
Bank signs deal with AV vendor in an attempt to stop phishers in their tracks. In an attempt to prevent online banking fraud, a British bank has signed a deal with Finnish… https://www.virusbulletin.com/blog/2006/06/bank-takes-steps-increase-customer-security/

May

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/05/

Spam papers available

Organizers of the 2006 Spam Conference encourage you to get reading.
Organizers of the 2006 Spam Conference encourage you to get reading. Papers and slides from the 2006 Spam Conference held at the end of March are now available online. The… https://www.virusbulletin.com/blog/2006/05/spam-papers-available/

Security survey and checklist

Attempt to gain better understanding of the costs of computer security incidents.
Attempt to gain better understanding of the costs of computer security incidents. Businesses in the US have been urged to complete a survey issued jointly by the US Departments of… https://www.virusbulletin.com/blog/2006/05/security-survey-and-checklist/

OECD calls for coordination and cooperation

OECD issues 'Recommendation on Cross-Border Cooperation in the Enforcement of Laws against Spam'.
OECD issues 'Recommendation on Cross-Border Cooperation in the Enforcement of Laws against Spam'. The Organization for Economic Cooperation and Development (OECD) has called on… https://www.virusbulletin.com/blog/2006/05/oecd-calls-coordination-and-cooperation/

VoIP phishing scam

New species of phish spotted.
New species of phish spotted. A new variety of phishing scam was spotted last month: VoIP phishing. Instead of coercing victims into entering their confidential details on a fake… https://www.virusbulletin.com/blog/2006/05/voip-phishing-scam/

May issue of VB published

The May issue of Virus Bulletin is now available for subscribers to download.
The May issue of Virus Bulletin is now available for subscribers to download. The May 2006 issue of Virus Bulletin is now available for subscribers to browse online or download… https://www.virusbulletin.com/blog/2006/05/may-issue-vb-published/

VB job vacancy

There are currently no job vacancies at Virus Bulletin.
There are currently no job vacancies at Virus Bulletin. Posted on 8 June 2006 by Virus Bulletin https://www.virusbulletin.com/blog/2006/04/vb-job-vacancy/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.