Alexandre Côté Cyr

Alexandre Côté Cyr

Malware Researcher


Education:B.Sc.A in Computer Science and Software Engineering from the Université du Québec à Montréal.

What malware do you hate the most? Commercial spyware. Especially when used against journalists, civil society and vulnerable people.

Golden rule for cyberspace? Cyberspace isn’t a separate realm anymore, it’s woven into the “real” world in ways we often don’t think about or notice.

Favorite computer game/activity? CTFs and CRPGs.


4 articles by Alexandre Côté Cyr

ESET research

MQsTTang: Mustang Panda’s latest backdoor treads new ground with Qt and MQTT

MQsTTang: Mustang Panda’s latest backdoor treads new ground with Qt and MQTT

ESET research

MQsTTang: Mustang Panda’s latest backdoor treads new ground with Qt and MQTT

ESET researchers tease apart MQsTTang, a new backdoor used by Mustang Panda, which communicates via the MQTT protocol

Alexandre Côté Cyr02 Mar 20238 min. read


ESET research

A lookback under the TA410 umbrella: Its cyberespionage TTPs and activity

A lookback under the TA410 umbrella: Its cyberespionage TTPs and activity

ESET research

A lookback under the TA410 umbrella: Its cyberespionage TTPs and activity

ESET researchers reveal a detailed profile of TA410: we believe this cyberespionage umbrella group consists of three different teams using different toolsets, including a new version of the FlowCloud espionage backdoor discovered by ESET.

Alexandre Côté Cyr and Matthieu Faou27 Apr 202233 min. read


ESET research

Mustang Panda’s Hodur: Old tricks, new Korplug variant

Mustang Panda’s Hodur: Old tricks, new Korplug variant

ESET research

Mustang Panda’s Hodur: Old tricks, new Korplug variant

ESET researchers have discovered Hodur, a previously undocumented Korplug variant spread by Mustang Panda, that uses phishing lures referencing current events in Europe, including the invasion of Ukraine

Alexandre Côté Cyr23 Mar 202215 min. read


ESET research

KryptoCibule: The multitasking multicurrency cryptostealer

KryptoCibule: The multitasking multicurrency cryptostealer

ESET research

KryptoCibule: The multitasking multicurrency cryptostealer

ESET researchers analyze a previously undocumented trojan that is spread via malicious torrents and uses multiple tricks to squeeze cryptocoins from its victims while staying under the radar

Matthieu Faou and Alexandre Côté Cyr02 Sep 202011 min. read