VB Blog

Malicious ads served on java.com

Posted by   Virus Bulletin on   Aug 28, 2014

If you do need to run plug-ins, make sure you enable click-to-play.

Read more  

VB2014 preview: Methods of malware persistence on Mac OS X

Posted by   Virus Bulletin on   Aug 27, 2014

Patrick Wardle shows that OS X users really have something to worry about.

Read more  

More than two million home routers have 'wide open backdoor'

Posted by   Virus Bulletin on   Aug 26, 2014

Default password makes vulnerability easy to exploit.

Read more  

VB2014 preview: Duping the machine - malware strategies, post sandbox detection

Posted by   Virus Bulletin on   Aug 22, 2014

James Wyke looks at four difference decoy methods.

Read more  

Paper: Bird's nest

Posted by   Virus Bulletin on   Aug 21, 2014

Raul Alvarez studies the Neshta prepending file infector.

Read more  

VB2014 preview: Labelling spam through the analysis of protocol patterns

Posted by   Virus Bulletin on   Aug 19, 2014

Andrei Husanu and Alexandru Trifan look at what TCP packet sizes can teach us.

Read more  

VB2014 preview: Optimized mal-ops. Hack the ad network like a boss

Posted by   Virus Bulletin on   Aug 15, 2014

Researchers Vadim Kotov and Rahul Kashyap to discuss how advertisements are the new exploit kits.

Read more  

Guest blog: Cyber insurance, is it for you?

Posted by   Virus Bulletin on   Aug 14, 2014

Sorin Mustaca looks at how companies trading online can insure the risks they run.

Read more  

Google to take tough stance on homoglyph attacks

Posted by   Virus Bulletin on   Aug 14, 2014

Good idea, but unlikely to have a huge impact.

Read more  

VB2014 preview: P0wned by a barcode

Posted by   Virus Bulletin on   Aug 13, 2014

Fabio Assolini to speak about malware targeting boletos.

Read more  

Search blog

APWG and FTC combine to fight ID fraud

Agencies join forces to release safety guidance documents.
Agencies join forces to release safety guidance documents. The Anti-Phishing Working Group (APWG) and the US Federal Trade Commission (FTC) have pooled their resources and… https://www.virusbulletin.com/blog/2007/09/apwg-and-ftc-combine-fight-id-fraud/

Sender authentication checks on the rise

SPF records creep into top ten content triggers checked by ISPs.
SPF records creep into top ten content triggers checked by ISPs. A report by email marketing software provider Lyris has revealed that use of the Sender Policy Framework (SPF)… https://www.virusbulletin.com/blog/2007/09/sender-authentication-checks-rise/

Unsafe computing in abundance

Reports and statistics on unsafe computing practices.
Reports and statistics on unsafe computing practices. Last month saw a flurry of reports and statistics on unsafe computing practices. To kick off, almost a quarter of… https://www.virusbulletin.com/blog/2007/09/unsafe-computing-abundance/

September

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2007/09/

September issue of VB published

The September issue of Virus Bulletin is now available for subscribers to download.
The September issue of Virus Bulletin is now available for subscribers to download. The September 2007 issue of Virus Bulletin is now available for subscribers to browse online… https://www.virusbulletin.com/blog/2007/09/september-issue-vb-published/

YouTube latest Storm hook

Fake video links aim to pull in yet more victims.
Fake video links aim to pull in yet more victims. The never-ending stream of 'Storm' attacks continued over the weekend with a new tactic - the latest spammed email campaign… https://www.virusbulletin.com/blog/2007/08/youtube-latest-storm-hook/

Sony in more rootkit rows

Accusations of sneakiness and unsafe practices hit media giants again.
Accusations of sneakiness and unsafe practices hit media giants again.Sony has been tangled up in two separate rootkit scares in the past few days, with a brief outcry over hidden… https://www.virusbulletin.com/blog/2007/08/sony-more-rootkit-rows/

String of vulnerabilities found in ServerProtect

Several minor holes patched in Trend Micro corporate product.
Several minor holes patched in Trend Micro corporate product. A series of security issues have been reported in Trend Micro's ServerProtect server-level product, which could allow… https://www.virusbulletin.com/blog/2007/08/string-vulnerabilities-found-serverprotect/

Four charged with writing Fujacks

Malware authors and sellers appear in Chinese court.
Malware authors and sellers appear in Chinese court. Four men have appeared in a public court in Hubei Province, China, charged with writing, selling and spreading the W32/Fujacks… https://www.virusbulletin.com/blog/2007/08/four-charged-writing-fujacks/

Latest VB100 announced

Novell NetWare server products to be tested.
Novell NetWare server products to be tested. VB has issued a call for submissions for the latest VB100 comparative review, which will measure the performance of products for the… https://www.virusbulletin.com/blog/2007/08/latest-announced/

FBI-led panel to provide insight into international fight against cybercrime

International law enforcement agencies set to join forces at VB2007 in Vienna.
International law enforcement agencies set to join forces at VB2007 in Vienna. International law enforcement agencies are set to join forces at the VB2007 anti-malware conference… https://www.virusbulletin.com/blog/2007/08/fbi-led-panel-provide-insight-international-fight-against-cybercrime/

AVK tops latest AV-Test charts

Top four beat 99% in large collection scan.
Top four beat 99% in large collection scan. Testers at AV-Test.org have run 29 products over a massive collection of malware samples, with detection rates measured against 874,822… https://www.virusbulletin.com/blog/2007/08/avk-tops-latest-av-test-charts/

Latest Storm barrage offers site memberships

New tactic provides logins to special-interest sites.
New tactic provides logins to special-interest sites. The 'Storm' attack has changed tactic yet again, with the latest set of spams providing login details to a wide selection of… https://www.virusbulletin.com/blog/2007/08/latest-storm-barrage-offers-site-memberships/

Monster haul of data reaped from job site

Trojan gathers 1.6 million sets of jobseeker records.
Trojan gathers 1.6 million sets of jobseeker records. Researchers at Symantec have reported discovering a server carrying 1.6 million entries from the popular jobseeking website… https://www.virusbulletin.com/blog/2007/08/monster-haul-data-reaped-job-site/

Phish poses as Sophos malware alert

Fake security alarm lures users to spoofed site.
Fake security alarm lures users to spoofed site. A phishing email recently spammed out uses the name of security firm Sophos to lend credence to a fake malware alert, designed to… https://www.virusbulletin.com/blog/2007/08/phish-poses-sophos-malware-alert/

ClamAV taken over by Sourcefire

Snort maker buys into open-source AV.
Snort maker buys into open-source AV. Open-source anti-virus product ClamAV has been acquired by Sourcefire, the US-based company behind leading open-source intrusion detection… https://www.virusbulletin.com/blog/2007/08/clamav-taken-over-sourcefire/

14 flaws fixed in bumper Patch Tuesday

Critical remote execution and hijack holes closed.
Critical remote execution and hijack holes closed.Microsoft's monthly 'Patch Tuesday' security bulletin includes nine separate bulletins this month, covering a total of 14… https://www.virusbulletin.com/blog/2007/08/14-flaws-fixed-bumper-patch-tuesday/

Storm e-card malware keeps on coming

No end to flood of fake friendly greetings.
No end to flood of fake friendly greetings. A further wave of e-cards carrying links to 'Storm' malware (various labelled Nuwar, Peacomm, Dorf, Zhelatin) has been hitting inboxes… https://www.virusbulletin.com/blog/2007/08/storm-e-card-malware-keeps-coming/

Webcam zero-day in Yahoo! Messenger

Video chat invites pose vulnerability danger.
Video chat invites pose vulnerability danger. A zero-day vulnerability has been reported in the webcam module of Yahoo! Messenger, allowing attackers remote access to systems open… https://www.virusbulletin.com/blog/2007/08/webcam-zero-day-yahoo-messenger/

AV testing practices questioned

Professional and amateur tests criticised.
Professional and amateur tests criticised. Last week, IT industry commentator and renowned anti-anti-virus writer Robin Bloor released a typically inflammatory article implying… https://www.virusbulletin.com/blog/2007/08/av-testing-practices-questioned/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.