Virus Buletin Board

The latest Blog posts from the VB team
Updated: 8 min 12 sec ago

VB2017 video: FinFisher: New techniques and infection vectors revealed

1 hour 46 min ago
Today, we publish the video of the VB2017 presentation by ESET researcher Filip Kafka, who looked at recent changes in the FinFisher government malware, including its infection vectors.

Read more
Categories: Data nyheter

Throwback Thursday: The beginning of the end(point): where we are now and where we'll be in five years

Thu, 11/23/2017 - 15:15
We look back at the VB2016 presentation by Adrian Sanabria on the state of endpoint security, both now and in the future.

Read more
Categories: Data nyheter

VB2017 paper: Beyond lexical and PDNS: using signals on graphs to uncover online threats at scale

Wed, 11/22/2017 - 16:57
At VB2017 in Madrid, Cisco Umbrella (OpenDNS) researchers Dhia Mahjoub and David Rodriguez presented a new approach to detecting infected machines using graphs to detect botnet traffic at scale. Today we publish both Dhia and David's paper and the recording of their presentation.

Read more
Categories: Data nyheter

Firefox 59 to make it a lot harder to use data URIs in phishing attacks

Tue, 11/21/2017 - 17:01
Firefox developer Mozilla has announced that, as of version 59 of the browser, many kinds of data URIs, which provide a way to create "domainless web content", will not be rendered in the browser, thus making this trick - used in various phishing campaigns - a lot less attractive.

Read more
Categories: Data nyheter

Standalone product test: FireEye Endpoint

Thu, 11/16/2017 - 16:38
Virus Bulletin ran a standalone test on FireEye's Endpoint Security solution.

Read more
Categories: Data nyheter

VB2017 video: Consequences of bad security in health care

Mon, 11/13/2017 - 11:41
Jelena Milosevic, a nurse with a passion for IT security, is uniquely placed to witness poor security practices in the health care sector, and to fully understand the consequences. Today, we publish the recording of a presentation given by Jelena at VB2017 in Madrid, in which she shared her inside view of security in hospitals.

Read more
Categories: Data nyheter

Vulnerabilities play only a tiny role in the security risks that come with mobile phones

Thu, 11/09/2017 - 11:04
Both bad news (all devices were pwnd) and good news (pwning is increasingly difficult) came from the most recent mobile Pwn2Own competition. But the practical security risks that come with using mobile phones have little to do with vulnerabilities.

Read more
Categories: Data nyheter

VB2017 paper: The (testing) world turned upside down

Wed, 11/08/2017 - 13:26
At VB2017 in Madrid, industry veteran and ESET Senior Research Fellow David Harley presented a paper on the state of security software testing. Today we publish David's paper in both HTML and PDF format.

Read more
Categories: Data nyheter

VB2017 video: Turning Trickbot: decoding an encrypted command-and-control channel

Fri, 11/03/2017 - 12:21
Trickbot, a banking trojan which appeared this year, seems to be a new, more modular, and more extensible malware descendant of the notorious Dyre botnet trojan. At VB2017, Symantec researcher Andrew Brandt presented a walkthrough of a typical Trickbot infection process, and its aftermath, as seen through the lens of a tool used to perform man-in-the-middle decryption. Today, we publish both Andrew's slides and the recording of his presentation.

Read more
Categories: Data nyheter

Paper: FAME - Friendly Malware Analysis Framework

Thu, 11/02/2017 - 09:02
Today, we publish a short paper in which CERT Société Générale presents FAME, its open source malware analysis framework.

Read more
Categories: Data nyheter

Ebury and Mayhem server malware families still active

Tue, 10/31/2017 - 11:27
Ebury and Mayhem, two families of Linux server malware, about which VB published papers back in 2014, are still active and have received recent updates.

Read more
Categories: Data nyheter

VB2017 paper: Crypton - exposing malware's deepest secrets

Fri, 10/27/2017 - 09:57
Crypton, a tool developed by F5 Networks researchers Julia Karpin and Anna Dorfman, aims to speed up the reverse engineering process by decrypting encrypted content found in a (malicious) binary. The researchers described the tool in a paper which they presented at VB2017 in Madrid. Today, we publish both the paper and the recording of their presentation.

Read more
Categories: Data nyheter

VB2017 paper: The sprawling market of consumer spyware

Wed, 10/25/2017 - 12:07
For many people, the threat of an abusive partner or ex-partner is very real - and the market for consumer spyware worryingly large. Today, we publish the recording of a presentation on the subject of consumer spyware given at VB2017 by The Daily Beast reporter Joseph Cox.

Read more
Categories: Data nyheter

Gábor Szappanos wins fourth Péter Szőr Award

Mon, 10/23/2017 - 11:25
At the VB2017 gala dinner, the fourth Péter Szőr Award was presented to Sophos researcher Gábor Szappanos for his paper "AKBuilder – the crowdsourced exploit kit".

Read more
Categories: Data nyheter

VB2017 paper: Walking in your enemy's shadow: when fourth-party collection becomes attribution hell

Fri, 10/20/2017 - 12:26
We publish the VB2017 paper and video by Kaspersky Lab researchers Juan Andres Guerrero-Saade and Costin Raiu, in which they look at fourth-party collection (spies spying on other spies' campaigns) and its implications for attribution.

Read more
Categories: Data nyheter

Didn't come to VB2017? Tell us why!

Wed, 10/11/2017 - 19:25
Virus Bulletin is a company - and a conference - with a mission: to further the research in and facilitate the fight against digital threats. To help us in this mission, we want to hear from those who didn't come to Madrid. What was your impression of the conference? What did you think of this year's programme? And why couldn't you come to Madrid?

Read more
Categories: Data nyheter

Montreal will host VB2018

Tue, 10/10/2017 - 10:12
Last week, we announced the full details of VB2018, which will take place 3-5 October 2018 at the Fairmont The Queen Elizabeth hotel in Montreal, Quebec, Canada.

Read more
Categories: Data nyheter

VB2017 preview: Beyond lexical and PDNS (guest blog)

Thu, 10/05/2017 - 09:55
In a special guest blog post, VB2017 Silver sponsor Cisco Umbrella writes about a paper that researchers Dhia Mahjoub and David Rodriguez will present at the conference this Friday.

Read more
Categories: Data nyheter

Avast to present technical details of CCleaner hack at VB2017

Mon, 10/02/2017 - 13:01
The recently discovered malicious CCleaner version has become one of the biggest security stories of 2017. Two researchers from Avast, the company that had recently acquired CCleaner developer Piriform, will share the results of their investigations at VB2017 in Madrid this week.

Read more
Categories: Data nyheter

VB2017 preview: Walking in your enemy's shadow: when fourth-party collection becomes attribution hell

Mon, 10/02/2017 - 10:10
We preview the VB2017 paper by Kaspersky Lab researchers Juan Andrés Guerrero-Saade and Costin Raiu on fourth-party collection and its implications for attack attribution.

Read more
Categories: Data nyheter

Pages

KONTAKTA OSS

Tel: 0930-318 13

SMS: 076-815 18 06

email: nash@nashnet.nu

Contact

Custom Search