ESET Research


2300 articles

Registers as "Default Print Monitor", but is a malicious downloader. Meet DePriMon

Registers as "Default Print Monitor", but is a malicious downloader. Meet DePriMon

Registers as "Default Print Monitor", but is a malicious downloader. Meet DePriMon

ESET researchers have discovered a new downloader with a novel, not previously seen in the wild installation technique

ESET Research21 Nov 2019


Mispadu: Advertisement for a discounted Unhappy Meal

Mispadu: Advertisement for a discounted Unhappy Meal

Mispadu: Advertisement for a discounted Unhappy Meal

Another in our occasional series demystifying Latin American banking trojans

ESET Research19 Nov 2019


Tracking down the developer of Android adware affecting millions of users

Tracking down the developer of Android adware affecting millions of users

Tracking down the developer of Android adware affecting millions of users

ESET researchers discovered a year-long adware campaign on Google Play and tracked down its operator. The apps involved, installed eight million times, use several tricks for stealth and persistence.

Lukas Stefanko24 Oct 2019


Winnti Group's skip-2.0: A Microsoft SQL Server backdoor

Winnti Group's skip-2.0: A Microsoft SQL Server backdoor

Winnti Group's skip-2.0: A Microsoft SQL Server backdoor

Notorious cyberespionage group debases MSSQL

Mathieu Tartare21 Oct 2019


Fleecing the onion: Darknet shoppers swindled out of bitcoins via trojanized Tor Browser

Fleecing the onion: Darknet shoppers swindled out of bitcoins via trojanized Tor Browser

Fleecing the onion: Darknet shoppers swindled out of bitcoins via trojanized Tor Browser

ESET researchers discover a trojanized Tor Browser distributed by cybercriminals to steal bitcoins from darknet market buyers

Anton Cherepanov18 Oct 2019


What was wrong with Alexa? How Amazon Echo and Kindle got KRACKed

What was wrong with Alexa? How Amazon Echo and Kindle got KRACKed

What was wrong with Alexa? How Amazon Echo and Kindle got KRACKed

ESET Smart Home Research Team uncovers Echo, Kindle versions vulnerable to 2017 Wi-Fi vulnerabilities

Miloš Čermák17 Oct 2019


Operation Ghost: The Dukes aren’t back – they never left

Operation Ghost: The Dukes aren’t back – they never left

Operation Ghost: The Dukes aren’t back – they never left

ESET researchers describe recent activity of the infamous espionage group, the Dukes, including three new malware families

ESET Research17 Oct 2019


Connecting the dots: Exposing the arsenal and methods of the Winnti Group

Connecting the dots: Exposing the arsenal and methods of the Winnti Group

Connecting the dots: Exposing the arsenal and methods of the Winnti Group

New ESET white paper released describing updates to the malware arsenal and campaigns of this group known for its supply-chain attacks

Marc-Etienne M.Léveillé and Mathieu Tartare14 Oct 2019


ESET discovers Attor, a spy platform with curious GSM fingerprinting

ESET discovers Attor, a spy platform with curious GSM fingerprinting

ESET discovers Attor, a spy platform with curious GSM fingerprinting

ESET researchers discover a previously unreported cyberespionage platform used in targeted attacks against diplomatic missions and governmental institutions, and privacy-concerned users

Zuzana Hromcová10 Oct 2019