VB Blog

Paper: Dridex in the Wild

Posted by   Virus Bulletin on   Jul 13, 2015

Meng Su explains how Dridex works and how it communicates with its C&C server.

Read more  

Those doing bad things deserve privacy too

Posted by   Virus Bulletin on   Jul 10, 2015

Hacking Team leakers should have taken a leaf out of Snowden's book.

Read more  

Throwback Thursday: Cabirn Fever

Posted by   Virus Bulletin on   Jul 9, 2015

This Throwback Thursday, we turn the clock back to 2004, when the first worm to spread from mobile phone to mobile phone appeared.

Read more  

Little sympathy for breached Hacking Team

Posted by   Virus Bulletin on   Jul 8, 2015

Lists of customers, source code and zero-day vulnerabilities made public.

Read more  

Throwback Thursday: The Updating Game

Posted by   Virus Bulletin on   Jul 2, 2015

This Throwback Thursday, we turn the clock back to 1997, when automatic updates of AV software were not the norm.

Read more  

Nominations opened for second Péter Ször Award

Posted by   Virus Bulletin on   Jun 29, 2015

'Brilliant mind and a true gentleman' commemorated through annual award for technical security research.

Read more  

Latest spam filter test sees significant drop in catch rates

Posted by   Virus Bulletin on   Jun 26, 2015

Despite a drop in catch rates, 15 products earn a VBSpam award, with four earning a VBSpam+ award.

Read more  

VB2014 paper: Quantifying maliciousness in Alexa top-ranked domains

Posted by   Virus Bulletin on   Jun 26, 2015

Paul Royal looks at malware served through the most popular websites.

Read more  

Throwback Thursday: KAOS on the Superhighway?

Posted by   Virus Bulletin on   Jun 25, 2015

This Throwback Thursday, we turn the clock back to 1994, when KAOS4 was discovered on the Internet.

Read more  

Steganoprague: a VB2015 competition & puzzle

Posted by   Virus Bulletin on   Jun 24, 2015

Use your obfuscation and deobfuscation skills to win a prize during the VB2015 conference!

Read more  

Search blog

VB2016 paper: Modern attacks on Russian financial institutions

Today, we publish the VB2016 paper and presentation (recording) by ESET researchers Jean-Ian Boutin and Anton Cherepanov, in which they look at sophisticated attacks against Russian financial institutions.
Today, we publish the VB2016 paper "Modern attacks on Russian financial institutions" (here in HTML format and here in PDF format) by ESET researchers Jean-Ian Boutin and Anton… https://www.virusbulletin.com/blog/2016/december/vb2016-paper-modern-attacks-russian-financial-institutions/

Grum botnet's command-and-control servers shut down

Spam-sending botnet believed to be third largest in the world.
Spam-sending botnet believed to be third largest in the world. International co-operation between a number of parties has led to all command-and-control servers of the 'Grum'… https://www.virusbulletin.com/blog/2012/07/grum-botnet-s-command-and-control-servers-shut-down/

Cybercriminals frustrated with botnet trackers

Drastic measures discussed by users of online forum.
Drastic measures discussed by users of online forum. Russian cybercriminals are willing to go to great lengths to frustrate services that hinder botnets created with the ZeuS and… https://www.virusbulletin.com/blog/2011/03/cybercriminals-frustrated-botnet-trackers/

Spammers move from China to Russia

Stricter rules on registering .cn domains leads to increase in malicious .ru domains.
Stricter rules on registering .cn domains leads to increase in malicious .ru domains. A change in the rules of the organization responsible for registering .cn domains has resulted… https://www.virusbulletin.com/blog/2010/02/spammers-move-china-russia/

Russian Business Network leaves Russia

Leading cybercrime hosting hub moves business to fresh pastures.
Leading cybercrime hosting hub moves business to fresh pastures. The notorious Russian Business Network (RBN), recently making headlines for the massive amounts of malicious and… https://www.virusbulletin.com/blog/2007/11/russian-business-network-leaves-russia/

St. Petersburg US Consulate website hacked

Malware served by official government site.
Malware served by official government site. Web-watchers at Sophos have reported spotting malware hosted on the website of the US Consulate in St. Petersburg, using obfuscated… https://www.virusbulletin.com/blog/2007/09/st-petersburg-us-consulate-website-hacked/

Estonian websites suffer wave of DoS attacks

Baltic republic accuses Russia of cyber-warfare.
Baltic republic accuses Russia of cyber-warfare. A wave of denial of service (DoS) attacks on Estonian websites has prompted the Estonian government to accuse its neighbour of… https://www.virusbulletin.com/blog/2007/05/estonian-websites-suffer-wave-dos-attacks/

DoS attacks support political unrest

Estonia rioting backed up by attacks on government websites.
Estonia rioting backed up by attacks on government websites. Severe rioting in Estonia, sparked by anger over the removal of a Russian monument from a prominent war memorial, has… https://www.virusbulletin.com/blog/2007/05/dos-attacks-support-political-unrest/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.