VB Blog

Consumer spyware: a serious threat with a different threat model

Posted by   Martijn Grooten on   Apr 25, 2017

Consumer spyware is a growing issue and one that can have serious consequences: its use is increasingly common in domestic violence. But do our threat models consider the attacker with physical access to, and inside knowledge of the victim?

Read more  

VB2016 paper: Debugging and monitoring malware network activities with Haka

Posted by   Martijn Grooten on   Apr 24, 2017

In their VB2016 paper, Stormshield researchers Benoît Ancel and Mehdi Talbi introduced Haka, an open-source language to monitor, debug and control malicious network traffic. Both their paper and the video recording of their presentation are now available to read/view on www.virusbulletin.com.

Read more  

VB2017: a wide ranging and international conference programme

Posted by   Martijn Grooten on   Apr 13, 2017

We are proud to announce a very broad and very international programme for VB2017, which will take place in Madrid, 4-6 October 2017.

Read more  

John Graham-Cumming and Brian Honan to deliver keynote addresses at VB2017

Posted by   Martijn Grooten on   Apr 10, 2017

Virus Bulletin is excited to announce John-Graham Cumming and Brian Honan as the two keynote speakers for VB2017 in Madrid.

Read more  

Virus Bulletin says a fond farewell to John Hawes

Posted by   Martijn Grooten on   Mar 31, 2017

As VB's COO John Hawes moves on to new challenges, the team wish him a fond farewell and good luck in his future endeavours.

Read more  

VB2016 paper: One-Click Fileless Infection

Posted by   Martijn Grooten on   Mar 28, 2017

Symantec researchers Himanshu Anand and Chastine Menrige explain how a single click can lead to a compromised machine, without malware ever being stored on disk.

Read more  

Mostly blocked, but still good enough: Necurs sending pump-and-dump spam

Posted by   Martijn Grooten on   Mar 22, 2017

The Necurs botnet has started sending pump-and-dump spam. Almost all of these emails are blocked by spam filters, yet the stock price still increased.

Read more  

Why the SHA-1 collision means you should stop using the algorithm

Posted by   Martijn Grooten on   Mar 10, 2017

Realistically speaking, if your software or system uses the SHA-1 hashing algorithm, it is unlikely that it will be exploited in the foreseeable future. But it is also extremely difficult to be certain that your system won't be the exception.

Read more  

VB2017 Call for Papers: frequently asked questions

Posted by   Martijn Grooten on   Mar 10, 2017

The call for papers for VB2017, which takes place 4 to 6 October in Madrid, Spain, is currently open. We're always on the look out for new speakers and new content, so to help anyone who's unfamiliar with the VB conference, we've prepared a list of answers to some frequently asked questions about the event, and about how to submit a paper.

Read more  

Throwback Thursday: Michelangelo - Graffiti Not Art

Posted by   Helen Martin on   Mar 9, 2017

This week marked the 25th anniversary of the trigger date of the infamous Michelangelo virus. In January 1992, VB published an analysis of the boot sector virus that captured the imagination of the press and kicked up a media storm.

Read more  

Search blog

September

Anti-virus and security related news provided by independent anti-virus advisors, Virus Bulletin
https://www.virusbulletin.com/blog/2006/09/

Future browsers battle phishing

Microsoft and Mozilla's upcoming new versions to include safety measures.
Microsoft and Mozilla's upcoming new versions to include safety measures. Pre-release versions of both Mozilla FireFox 2 and Microsoft Internet Explorer 7 have been unveiled,… https://www.virusbulletin.com/blog/2006/09/future-browsers-battle-phishing/

More MS06-040 worries

Vulnerability still causing problems.
Vulnerability still causing problems. There have been further reports of malware spreading using the MS06-040 vulnerability, announced and patched three weeks ago on Microsoft's… https://www.virusbulletin.com/blog/2006/09/more-ms06-040-worries/

AT&T hack led to spearphish

Stolen details used to trick victims out of further info.
Stolen details used to trick victims out of further info. Transaction details stolen as part of last weekend's security breach of a shopping site run by US phone giant AT&T were… https://www.virusbulletin.com/blog/2006/09/amp-t-hack-led-spearphish/

Phone companies' security shaken

As T-Mobile hacker is convicted, AT&T reveals break-in.
As T-Mobile hacker is convicted, AT&T reveals break-in. A 23-year-old Oregon resident has been sentenced to a year of 'home detention', after being convicted of hacking into the… https://www.virusbulletin.com/blog/2006/08/phone-companies-security-shaken/

BitDefender to join mobile market

AV firm releases phone security beta.
AV firm releases phone security beta.BitDefender has become the latest AV company to make a move into the mobile device market. It has released a beta of its mobile AV software,… https://www.virusbulletin.com/blog/2006/08/bitdefender-join-mobile-market/

eBay phishing ups its game

Decent spelling and convincing design aim to trick users.
Decent spelling and convincing design aim to trick users. Users of eBay, perennial subject of phishing scams, are currently being targeted by a more than usually well-crafted… https://www.virusbulletin.com/blog/2006/08/ebay-phishing-ups-its-game/

Corporate mail spam drops Haxdoor

Business-related message carries trojan.
Business-related message carries trojan. A vaguely official-sounding email is being widely spammed, claiming to relate to some nebulous business activity between the sender and… https://www.virusbulletin.com/blog/2006/08/corporate-mail-spam-drops-haxdoor/

More ConsumerReports complaints

Testing organisation's methodology slammed again.
Testing organisation's methodology slammed again.ConsumerReports.org, the online wing of American consumers association Consumers Union, is once again taking flak for its testing… https://www.virusbulletin.com/blog/2006/08/more-consumerreports-complaints/

iPod spam carries trojan

Fake sales invoice includes downloader.
Fake sales invoice includes downloader. A new spam campaign claiming to be information on an order for a new iPod is accompanied by a trojan which, when run, attempts to download… https://www.virusbulletin.com/blog/2006/08/ipod-spam-carries-trojan/

AOL 9.0 slated for suspect tactics

More badware accusations levelled at web giant.
More badware accusations levelled at web giant.StopBadware.org, the international anti-malware coalition backed by Google and Sun among others, has labelled AOL's current free… https://www.virusbulletin.com/blog/2006/08/aol-9-0-slated-suspect-tactics/

Malware mostly crime-related, says Panda

Security firm reports 88% of new malware linked to cyber crime.
Security firm reports 88% of new malware linked to cyber crime. The labs of Spanish firm Panda Software have released a quarterly report, stating that criminal activity is behind… https://www.virusbulletin.com/blog/2006/08/malware-mostly-crime-related-says-panda/

Three years for botnet master

Zombie herder sentenced to 37 months behind bars.
Zombie herder sentenced to 37 months behind bars. A Californian 21-year-old has been sent to a federal prison in the US, after being convicted of computer fraud and computer damage… https://www.virusbulletin.com/blog/2006/08/three-years-botnet-master/

IBM invests in security, others may follow

Big Blue purchase sparks rumours of more mergers.
Big Blue purchase sparks rumours of more mergers. When massive cross-sector IT giant IBM bought Internet Security Systems for a rumoured $1.3 billion last week, it joined the list… https://www.virusbulletin.com/blog/2006/08/ibm-invests-security-others-may-follow/

Share dealers robbed, phishing suspected

Canadian stock-trading association warns of security breaches.
Canadian stock-trading association warns of security breaches. The Investment Dealers Association of Canada (IDA), a national regulatory organisation, has released an urgent press… https://www.virusbulletin.com/blog/2006/08/share-dealers-robbed-phishing-suspected/

Child porn blackmail spam carries trojan

Spoof mail claims to come from anti-child porn site.
Spoof mail claims to come from anti-child porn site. A spam campaign claiming to come from child porn activists ASACP accuses recipients of visiting child porn sites, suggesting a… https://www.virusbulletin.com/blog/2006/08/child-porn-blackmail-spam-carries-trojan/

Phishing help for Yahoo! users

As phishing nets spread wider, Yahoo! announces defensive 'seal'.
As phishing nets spread wider, Yahoo! announces defensive 'seal'. Web giant Yahoo! has announced plans to introduce a new anti-phishing system to help protect its customers. The… https://www.virusbulletin.com/blog/2006/08/phishing-help-yahoo-users/

Rooting out malware

Sophos joins anti-rootkit market, others expected to follow soon.
Sophos joins anti-rootkit market, others expected to follow soon.Sophos has released a free anti-rootkit tool, available for download from its website. The UK-based company joins… https://www.virusbulletin.com/blog/2006/08/rooting-out-malware/

Trend and Microsoft deny vulnerability

PowerPoint zero-day hype just hype after all.
PowerPoint zero-day hype just hype after all. After an announcement from Trend Micro sparked numerous reports of a zero-day PowerPoint exploit, taking advantage of an… https://www.virusbulletin.com/blog/2006/08/trend-and-microsoft-deny-vulnerability/

Stock scam spam duo sued

Pump-and-dump couple face fines, as do many others worldwide.
Pump-and-dump couple face fines, as do many others worldwide. A Connecticut couple have been indicted over claims they used a spam campaign to artificially inflate stock prices. In… https://www.virusbulletin.com/blog/2006/08/stock-scam-spam-duo-sued/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.