VB Blog

New additions complete the VB2020 localhost programme

Posted by   Virus Bulletin on   Aug 25, 2020

The programme for VB2020 localhost - the first virtual, and entirely free to attend VB conference - is now complete, with new additions to both the live programme and the on-demand programme.

Read more  

VB2020 localhost call for last minute papers: a unique opportunity

Posted by   Virus Bulletin on   Aug 10, 2020

Why VB2020 localhost presents a unique opportunity for you to share your research with security experts around the globe.

Read more  

VB2020 localhost call for last-minute papers now open!

Posted by   Virus Bulletin on   Jul 31, 2020

The call for last-minute papers for VB2020 localhost is now open. Submit before 17 August to have your paper considered for one of the nine slots reserved for 'hot' research!

Read more  

Announcing... VB2020 localhost

Posted by   Virus Bulletin on   Jul 29, 2020

Announcing VB2020 localhost: the carbon neutral, budget neutral VB conference!

Read more  

VB2019 paper: APT cases exploiting vulnerabilities in region-specific software

Posted by   Virus Bulletin on   May 4, 2020

At VB2019, JPCERT/CC's Shusei Tomonaga and Tomoaki Tani presented a paper on attacks that exploit vulnerabilities in software used only in Japan, using malware that is unique to Japan. Today we publish both their paper and the recording of their presentation.

Read more  

New paper: Detection of vulnerabilities in web applications by validating parameter integrity and data flow graphs

Posted by   Helen Martin on   Apr 30, 2020

In a follow-up to a paper presented at VB2019, Prismo Systems researchers Abhishek Singh and Ramesh Mani detail algorithms that can be used to detect SQL injection in stored procedures, persistent cross-site scripting (XSS), and server‑side request forgery (SSRF) by instrumenting web applications.

Read more  

VB2020 programme announced

Posted by   Virus Bulletin on   Apr 16, 2020

VB is pleased to reveal the details of an interesting and diverse programme for VB2020, the 30th Virus Bulletin International Conference.

Read more  

VB2019 paper: Cyber espionage in the Middle East: unravelling OSX.WindTail

Posted by   Virus Bulletin on   Apr 2, 2020

At VB2019 in London, Jamf's Patrick Wardle analysed the WindTail macOS malware used by the WindShift APT group, active in the Middle East. Today we publish both Patrick's paper and the recording of his presentation.

Read more  

VB2019 paper: 2,000 reactions to a malware attack – accidental study

Posted by   Virus Bulletin on   Mar 24, 2020

At VB2019 cybercrime journalist and researcher Adam Haertlé presented an analysis of almost 2000 unsolicited responses sent by victims of a malicious email campaign. Today we publish both his paper and the recording of his presentation.

Read more  

VB2019 paper: Why companies need to focus on a problem they do not know they have

Posted by   Virus Bulletin on   Mar 20, 2020

Often unbeknownst to network administrators, many company networks are used to download child sexual abuse material. In a paper presented at VB2019 in London, NetClean’s Richard Matti and Anna Creutz looked at this problem and what companies can do, ultimately, to help safeguard children. Today we publish their full paper.

Read more  

Search blog

New Zealand passes anti-spam law

As bulk emailing is regulated in NZ, Canada hears calls for similar laws.
As bulk emailing is regulated in NZ, Canada hears calls for similar laws. The New Zealand government announced last week the final passing of a law to control spam originating in… https://www.virusbulletin.com/blog/2007/03/new-zealand-passes-anti-spam-law/

Gromozon hijacks Italian MSN searches

Link bombing pushes blended spyware attack to top of popular search results.
Link bombing pushes blended spyware attack to top of popular search results. The gang behind the sophisticated Gromozon blended threat, also known as LinkOptimizer, is thought to… https://www.virusbulletin.com/blog/2007/03/gromozon-hijacks-italian-msn-searches/

OneCare fails another detection test

Microsoft product found not up to scratch in AV-Comparatives review.
Microsoft product found not up to scratch in AV-Comparatives review. Respected testing organisation AV-Comparatives has released the results of its latest in-depth test of… https://www.virusbulletin.com/blog/2007/03/onecare-fails-another-detection-test/

UK watchdog body backs phishing victims

Consumer group Which? urges banks to protect customers scammed online.
Consumer group Which? urges banks to protect customers scammed online. Major UK consumer protection organisation Which? has issued a call for a change to rules regarding… https://www.virusbulletin.com/blog/2007/03/uk-watchdog-body-backs-phishing-victims/

News round-up

February's goings on in the anti-malware industry.
February's goings on in the anti-malware industry. Mobile security was something of a key theme last month, with a rash of new products released alongside updates to those… https://www.virusbulletin.com/blog/2007/03/news-round/

Phishing techniques

Sorin Mustaca documents common and emerging phishing techniques.
Sorin Mustaca documents common and emerging phishing techniques. Despite the fact that phishing is receiving increasing amounts of media coverage, and people are more aware than… https://www.virusbulletin.com/blog/2007/03/phishing-techniques/

March

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2007/03/

Cartoon trojan threatens P2P users

Illegal Japanese file-sharers warned off by anime character malware.
Illegal Japanese file-sharers warned off by anime character malware. A series of trojans have been spotted targeting users of popular Japanese file-sharing system Winny. The… https://www.virusbulletin.com/blog/2007/02/cartoon-trojan-threatens-p2p-users/

Trend troubled by further flaw

Second vulnerability unveiled this month only affects server products.
Second vulnerability unveiled this month only affects server products. Less than two weeks after details of a UPX vulnerability affecting many of Trend Micro's products were… https://www.virusbulletin.com/blog/2007/02/trend-troubled-further-flaw/

FTC criticised for low adware fine

Latest DirectRevenue case nets mere $1.5 million penalty.
Latest DirectRevenue case nets mere $1.5 million penalty. Serial adware user DirectRevenue, along with several advertising clients, has agreed to settle a case brought by the US… https://www.virusbulletin.com/blog/2007/02/ftc-criticised-low-adware-fine/

Fujacks writers arrested in first for China

Eight seized for writing and selling cuddly panda malware.
Eight seized for writing and selling cuddly panda malware. Eight men have been arrested in the central Chinese province of Hubei, on suspicion of involvement in the creation and… https://www.virusbulletin.com/blog/2007/02/fujacks-writers-arrested-first-china/

Trend hit by UPX vulnerability

Compression handling issue affects swathe of products.
Compression handling issue affects swathe of products. A wide range of Trend Micro security products are affected by a flaw in the handling of files compressed with UPX, which… https://www.virusbulletin.com/blog/2007/02/trend-hit-upx-vulnerability/

Massive attack on web root servers

Large-scale DDoS barrage hits top-level DNS machines.
Large-scale DDoS barrage hits top-level DNS machines. An exceptionally large Distributed Denial of Service (DDoS) attack took place yesterday, targeting the root DNS servers at the… https://www.virusbulletin.com/blog/2007/02/massive-attack-web-root-servers/

Popular sites carrying Javascript attacks

Superbowl stadium among many hosting malware attack.
Superbowl stadium among many hosting malware attack. Malicious Javascript has been planted on numerous legitimate websites over the weekend, attempting to take advantage of known… https://www.virusbulletin.com/blog/2007/02/popular-sites-carrying-javascript-attacks/

Major brands hit with adware fines

Landmark case blames advertisers for malware tactics.
Landmark case blames advertisers for malware tactics. Three major brands, Priceline, Travelocity and Cingular Wireless, have settled a New York lawsuit charging them with using… https://www.virusbulletin.com/blog/2007/02/major-brands-hit-adware-fines/

VB100 news

This month: new platform, new logo.
This month: new platform, new logo. With the overall conclusion that the release of Vista will make little difference to the overall malware landscape, VB chose this month to put… https://www.virusbulletin.com/blog/2007/02/news/

Upcoming events

Round up of this year's must-attend spam events.
Round up of this year's must-attend spam events. The 2007 Spam Conference will take place on 30 March 2007 at MIT, Cambridge, MA, USA. The title for this year's conference is… https://www.virusbulletin.com/blog/2007/02/upcoming-events/

Microsoft steals market share

Symantec and McAfee see drops in market share.
Symantec and McAfee see drops in market share. A report by analyst firm NPD Group has revealed that anti-malware heavyweights Symantec and McAfee both lost market share following… https://www.virusbulletin.com/blog/2007/02/microsoft-steals-market-share/

February

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2007/02/

Vista security concerns

'Dramatically more secure'... or not?
'Dramatically more secure'... or not? January saw the full commercial release of Microsoft's latest operating system: the long-awaited Vista. Since its release arguments have… https://www.virusbulletin.com/blog/2007/02/vista-security-concerns/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.