Category: blog

  • Conference review: Botconf 2016

    This review was written by Martijn Grooten, Adrian Luca and Ionuț Răileanu. Though still only in its fourth year, Botconf has become one of the Virus Bulletin team’s favourite conferences. Late in November, three of the VB team flew to Lyon to attend this year’s three-day event. As its name suggests, Botconf is aimed at…

  • VB2016 video: On the StrongPity waterhole attacks targeting Italian and Belgian encryption users

    Last week, Microsoft published a paper on two attack groups, dubbed PROMETHIUM and NEODYMIUM, that targeted individuals in Europe and that both used the then unknown and unpatched vulnerability CVE-2016-4117 in Abobe Flash Player . However, Microsoft wasn’t the first company to write about the PROMETHIUM group and the Truvasys malware it used. At VB2016 in Denver, Kaspersky…

  • Conference review: Botconf 2016

    This review was written by Martijn Grooten, Adrian Luca and Ionuț Răileanu. Though still only in its fourth year, Botconf has become one of the Virus Bulletin team’s favourite conferences. Late in November, three of the VB team flew to Lyon to attend this year’s three-day event. As its name suggests, Botconf is aimed at…

  • Throwback Thursday: Adjust Your Attitude!

    At the VB2016 conference in Denver earlier this year, ESET researcher Stephen Cobb spoke about the cybersecurity skills shortage, providing an overview of existing efforts to assess cyber-aptitude and ability, and looking at the results of a number of experimental fast-track cybersecurity training programmes. He also reviewed the scant existing studies of the personality traits of information…

  • Throwback Thursday: Adjust Your Attitude!

    At the VB2016 conference in Denver earlier this year, ESET researcher Stephen Cobb spoke about the cybersecurity skills shortage, providing an overview of existing efforts to assess cyber-aptitude and ability, and looking at the results of a number of experimental fast-track cybersecurity training programmes. He also reviewed the scant existing studies of the personality traits of information…

  • VB2016 paper: Modern attacks on Russian financial institutions

    Today, we publish the VB2016 paper “Modern attacks on Russian financial institutions” ( here in HTML format and here in PDF format) by ESET researchers Jean-Ian Boutin and Anton Cherepanov. In it, they look at a number of groups that have performed sophisticated attacks against a number of Russian financial institutions. The work of these…

  • VB2016 paper: Modern attacks on Russian financial institutions

    Today, we publish the VB2016 paper “Modern attacks on Russian financial institutions” ( here in HTML format and here in PDF format) by ESET researchers Jean-Ian Boutin and Anton Cherepanov. In it, they look at a number of groups that have performed sophisticated attacks against a number of Russian financial institutions. The work of these…

  • More on the Moose botnet at Botconf

    This week, several members of the Virus Bulletin team are attending Botconf 2016 in Lyon, France. Security conferences provide good opportunities to meet fellow researchers and to learn about new trends and developments, but it also interesting to see a continuation of previously presented research. At this year’s Botconf, GoSecure researchers Masarah Paquet-Clouston and Olivier Bilodeau presented their research on…

  • VB2016 paper: Defeating sandbox evasion: how to increase successful emulation rate in your virtualized environment

    In order to analyse a potentially malicious binary, an important first step is to run it in a specialised virtual environment, or sandbox environment, and see what it does – if it exhibits some known malicious behaviour, it is probably worth blocking it. However, malware authors are wise to this analysis technique, and most pieces…

  • More on the Moose botnet at Botconf

    This week, several members of the Virus Bulletin team are attending Botconf 2016 in Lyon, France. Security conferences provide good opportunities to meet fellow researchers and to learn about new trends and developments, but it also interesting to see a continuation of previously presented research. At this year’s Botconf, GoSecure researchers Masarah Paquet-Clouston and Olivier Bilodeau presented their research on…