OceanLotus: macOS malware update
Latest ESET research describes the inner workings of a recently found addition to OceanLotus’s toolset for targeting Mac users
Latest ESET research describes the inner workings of a recently found addition to OceanLotus’s toolset for targeting Mac users
ESET researchers detail the latest tricks and techniques OceanLotus uses to deliver its backdoor while staying under the radar
Asian game developers again targeted in supply-chain attacks distributing malware in legitimately signed software
An interview with ESET malware researcher Lukáš Štefanko about Android banking malware, the topic of his latest white paper
ESET researchers have discovered new versions of the DanaBot Trojan, updated with a more complicated protocol for C&C communication and slight modifications to architecture and campaign IDs
Did malware disrupt newspaper deliveries in major US cities? Here’s what’s known about the incident so far and the leading suspect: Ryuk ransomware. Plus, advice on defending your organization against such attacks.
ESET research shows that DanaBot operators have been expanding the malware’s scope and possibly cooperating with another criminal group
ESET researchers discovered a set of previously undocumented Linux malware families based on OpenSSH. In the white paper, “The Dark Side of the ForSSHe”, they release analysis of 21 malware families to improve the prevention, detection and remediation of such threats
Emotet starts another massive spam campaign just as the shopping season picks up steam
In August 2018, Sednit’s operators deployed two new Zebrocy components, and since then we have seen an uptick in Zebrocy deployments, with targets in Central Asia, as well as countries in Central and Eastern Europe, notably embassies, ministries of foreign affairs, and diplomats
ESET researchers identified 21 distinct websites that had been compromised including some particularly notable government and media sites
The recent spike in Emotet activity shows that it remains an active threat
Latest ESET research shows just how far attackers will go in order to steal bitcoin from customers of one specific virtual currency exchange
The malicious apps have all been removed from the official Android store but not before the apps were installed by almost 30,000 users
Customers see their admin credentials stolen and their servers infected with Linux/ChachaDDoS
Website altered to serve a malware-tainted version of otherwise legitimate software with the global event in Russia acting as a smokescreen
D-Link and Changing Information Technologies code-signing certificates stolen and abused by highly skilled cyberespionage group focused on East Asia, particularly Taiwan
Entirely new malware family discovered by ESET researchers
ESET researchers have discovered a piece of banking malware that employs a new technique to bypass dedicated browser protection measures
The infamous outbreak may no longer be causing mayhem worldwide but the threat that enabled it is still very much alive and posing a major threat to unpatched and unprotected systems