White Papers

90 reports

Operation Liberpy’: Keyloggers and information theft in Latin America

Operation Liberpy’: Keyloggers and information theft in Latin America

Operation Liberpy’: Keyloggers and information theft in Latin America


Dissecting Linux/Moose

Dissecting Linux/Moose

The Analysis of a Linux Router-based Worm Hungry for Social Networks


CPL Malware in Brazil: Somewhere Between Banking Trojans and Malicious Emails

CPL Malware in Brazil: Somewhere Between Banking Trojans and Malicious Emails

CPL Malware in Brazil: Somewhere Between Banking Trojans and Malicious Emails


Unboxing Linux/Mumblehard

Unboxing Linux/Mumblehard

Linux/Mumblehard is a family of malware targeting servers running both the Linux and BSD operating systems.


Windows 10 patching process may leave enterprises vulnerable to zero-day attacks

Windows 10 patching process may leave enterprises vulnerable to zero-day attacks

Microsoft recently announced its new patch roll-out strategy for the latest incarnation of the Windows operating system. Aryeh Goretsky considers how the Windows 10 patching process might affect both the enterprise and the home user. Goretsky, A. Windows 10 patching process may leave enterprises vulnerable to zero-day attacks, March 2015, Virus Bulletin. Copyright is held by Virus Bulletin Ltd, but is made available on this site for personal use free of charge by permission of Virus Bulletin.


Windows Exploitation in 2014

Windows Exploitation in 2014

A new version of our earlier report on major trends in Windows exploitation and mitigation for 2014.


TorrentLocker: Ransomware in a country near you

TorrentLocker: Ransomware in a country near you

In late 2013, the CryptoLocker ransomware gained a lot of attention. It was hit by Operation Tovar mid-2014. Although they share many similarities, TorrentLocker is a different threat.


Lemming Aid and Kool Aid: Helping the Community to help itself through Education

Lemming Aid and Kool Aid: Helping the Community to help itself through Education

This paper, presented at the 2014 AVAR conference, looks at the difficulties  and possibilities of implementing cooperative initiatives for teaching computer hygiene in a complex 21st century threatscape.


Hesperbot – A New, Advanced Banking Trojan in the Wild

Hesperbot – A New, Advanced Banking Trojan in the Wild

A new and effective banking trojan has been discovered targeting online banking users in Turkey, the Czech Republic, Portugal and the United Kingdom. It uses very credible-looking phishing-like campaigns, related to trustworthy organizations, to lure victims into running the malware.