VB Blog

VB2019 paper: A vine climbing over the Great Firewall: a long-term attack against China

Posted by   Martijn Grooten on   Nov 28, 2019

Today we publish a VB2019 paper from Lion Gu and Bowen Pan from the Qi An Xin Threat Intelligence Center in China in which they analysed an APT group dubbed 'Poison Vine', which targeted various government, military and research institutes in China.

Read more  

VB2019 paper: Fantastic Information and Where to Find it: A guidebook to open-source OT reconnaissance

Posted by   Martijn Grooten on   Nov 22, 2019

A VB2019 paper by FireEye researcher Daniel Kapellmann Zafra explained how open source intelligence (OSINT) can be used to learn crucial details of the inner workings of many a system. Today we publish Daniel's paper and the recording of his presentation.

Read more  

VB2019 paper: Different ways to cook a crab: GandCrab Ransomware-as-a-Service (RaaS) analysed in depth

Posted by   Martijn Grooten on   Nov 21, 2019

Though active for not much longer than a year, GandCrab had been one of the most successful ransomware operations. In a paper presented at VB2019 in London, McAfee researchers John Fokker and Alexandre Mundo looked at the malware code, its evolution and the affiliate scheme behind it. Today we publish both their paper and the recording of their presentation.

Read more  

VB2019 paper: Domestic Kitten: an Iranian surveillance program

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, Check Point researchers Aseel Kayal and Lotem Finkelstein presented a paper detailing an Iranian operation they named 'Domestic Kitten' that used Android apps for targeted surveillance. Today we publish their paper and the video of their presentation.

Read more  

VB2019 video: Discretion in APT: recent APT attack on crypto exchange employees

Posted by   Martijn Grooten on   Nov 18, 2019

At VB2019 in London, LINE's HeungSoo Kang explained how cryptocurrency exchanges had been attacked using Firefox zero-days. Today, we publish the video of his presentation.

Read more  

VB2019 paper: DNS on fire

Posted by   Martijn Grooten on   Nov 7, 2019

In a paper presented at VB2019, Cisco Talos researchers Warren Mercer and Paul Rascagneres looked at two recent attacks against DNS infrastructure: DNSpionage and Sea Turtle. Today we publish their paper and the recording of their presentation.

Read more  

German Dridex spam campaign is unfashionably large

Posted by   Martijn Grooten on   Nov 6, 2019

VB has analysed a malicious spam campaign targeting German-speaking users with obfuscated Excel malware that would likely download Dridex but that mostly stood out through its size.

Read more  

Paper: Dexofuzzy: Android malware similarity clustering method using opcode sequence

Posted by   Martijn Grooten on   Nov 5, 2019

We publish a paper by researchers from ESTsecurity in South Korea, who describe a fuzzy hashing algorithm for clustering Android malware datasets.

Read more  

Emotet continues to bypass many email security products

Posted by   Martijn Grooten on   Nov 4, 2019

Having returned from a summer hiatus, Emotet is back targeting inboxes and, as seen in the VBSpam test lab, doing a better job than most other malicious campaigns at bypassing email security products.

Read more  

VB2019 paper: We need to talk - opening a discussion about ethics in infosec

Posted by   Martijn Grooten on   Nov 1, 2019

Those working in the field of infosec are often faced with ethical dilemmas that are impossible to avoid. Today, we publish a VB2019 paper by Kaspersky researcher Ivan Kwiatkowski looking at ethics in infosec as well as the recording of Ivan's presentation.

Read more  

Search blog

2010

Latest news from the anti-virus industry provided by independent anti-virus advisors, Virus Bulletin
NewsHefty Patch Tuesday bulletin rounds off bumper yearNo sign of an end to vulnerability glut. 15 December 2010Chinese whispers of malware writing and bribery in the industryAs… https://www.virusbulletin.com/blog/2010/

January

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2010/01/

January issue of VB published

The January issue of Virus Bulletin is now available for subscribers to download.
The January issue of Virus Bulletin is now available for subscribers to download. The January 2010 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2010/01/january-issue-vb-published/

Project Honey Pot 'celebrates' billionth spam message

Facebook about to become most phished organization.
Facebook about to become most phished organization. Few people would celebrate receiving a billion spam messages, but those at Project Honey Pot must have been a little proud when… https://www.virusbulletin.com/blog/2009/12/project-honey-pot-celebrates-billionth-spam-message/

Botnets becoming more robust

Zeus botnet used Amazon's in-the-cloud service to control bots.
Zeus botnet used Amazon's in-the-cloud service to control bots. New reports by MessageLabs and McAfee show that botherders have learned a lesson following the take-down of McColo… https://www.virusbulletin.com/blog/2009/12/botnets-becoming-more-robust/

False positive problem hits avast! users

Human failure blamed for faulty update.
Human failure blamed for faulty update. A relatively small subsection of the massive user base for Alwil's ever-popular avast! products were hit by a string of false positives last… https://www.virusbulletin.com/blog/2009/12/false-positive-problem-hits-avast-users/

IE zero-day bug fixed in Patch Tuesday updates

Serious browser bug main feature of monthly alerts, Adobe Flash issue also patched.
Serious browser bug main feature of monthly alerts, Adobe Flash issue also patched.Microsoft has released the December Patch Tuesday security bulletin, with a total of six alerts.… https://www.virusbulletin.com/blog/2009/12/ie-zero-day-bug-fixed-patch-tuesday-updates/

Next VB100 comparative announced

SUSE test to challenge Linux products.
SUSE test to challenge Linux products. The latest round of VB100 testing has been announced, with a comparative to be run on Novell's SUSE Linux Enterprise Server 11 in January.… https://www.virusbulletin.com/blog/2009/12/next-comparative-announced/

VB100 update

Post-test analysis corrects results for MS Forefront, CA.
Post-test analysis corrects results for MS Forefront, CA. In the wake of the mammoth VB100 comparative released earlier this week, the lab team have been conducting thorough… https://www.virusbulletin.com/blog/2009/12/update/

Legal success against notorious spammers

Atkinson to pay huge fine; Ralsky to spend years in prison.
Atkinson to pay huge fine; Ralsky to spend years in prison. US judges have sentenced two notorious spammers to a huge fine and years of imprisonment, respectively. Yesterday, a US… https://www.virusbulletin.com/blog/2009/12/legal-success-against-notorious-spammers/

December issue of VB published

The December issue of Virus Bulletin is now available for subscribers to download.
The December issue of Virus Bulletin is now available for subscribers to download. The December 2009 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2009/12/december-issue-vb-published/

December

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2009/12/

VB calls for collaboration amongst anti-spam vendors

VB finds that, when it comes to spam filtering, a combined effort outperforms individual products.
VB finds that, when it comes to spam filtering, a combined effort outperforms individual products. Virus Bulletin has discovered that running several spam filters in combination… https://www.virusbulletin.com/blog/2009/11/vb-calls-collaboration-amongst-anti-spam-vendors/

AV-Comparatives releases latest retrospective figures

Half of products rated top-class in proactive detection testing.
Half of products rated top-class in proactive detection testing. Independent testing lab AV-Comparatives has released its latest set of results, the semi-annual retrospective test… https://www.virusbulletin.com/blog/2009/11/av-comparatives-releases-latest-retrospective-figures/

Fortinet announces IPO

Gateway specialist releases share price projections.
Gateway specialist releases share price projections. Security firm Fortinet has announced its floatation on the Nasdaq stock market, the first IT security company to launch an IPO… https://www.virusbulletin.com/blog/2009/11/fortinet-announces-ipo/

ICSA Labs report reveals testing details

Certification issues unmasked in 20-year lab survey.
Certification issues unmasked in 20-year lab survey. Renowned testing and certification group ICSA Labs has released a fascinating report drawing back the curtain on its security… https://www.virusbulletin.com/blog/2009/11/icsa-labs-report-reveals-testing-details/

Anti-spam products do well in VB testing

VB announces anti-spam certification results.
VB announces anti-spam certification results.Virus Bulletin has announced that 12 products earned VBSpam awards in its latest round of comparative anti-spam testing. A total of 14… https://www.virusbulletin.com/blog/2009/11/anti-spam-products-do-well-vb-testing/

November issue of VB published

The November issue of Virus Bulletin is now available for subscribers to download.
The November issue of Virus Bulletin is now available for subscribers to download. The November 2009 issue of Virus Bulletin is now available for subscribers to browse online or… https://www.virusbulletin.com/blog/2009/11/november-issue-vb-published/

November

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2009/11/

AV-Comparatives publishes malware removal test

16 products challenged to remove selection of tricky infections.
16 products challenged to remove selection of tricky infections. Independent testing body AV-Comparatives has published its latest set of test results, a comparison of how well… https://www.virusbulletin.com/blog/2009/10/av-comparatives-publishes-malware-removal-test/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.