Malware


438 articles

How Emotet is changing tactics in response to Microsoft’s tightening of Office macro security

How Emotet is changing tactics in response to Microsoft’s tightening of Office macro security

How Emotet is changing tactics in response to Microsoft’s tightening of Office macro security

Emotet malware is back with ferocious vigor, according to ESET telemetry in the first four months of 2022. Will it survive the ever-tightening controls on macro-enabled documents?

Rene Holt16 Jun 2022


Virus Bulletin: Old malware never dies – it just gets more targeted

Virus Bulletin: Old malware never dies – it just gets more targeted

Virus Bulletin: Old malware never dies – it just gets more targeted

Putting a precision payload on top of more generic malware makes perfect sense for malware operators

Cameron Camp15 Oct 2021


FBI removes web shells from compromised Exchange servers

FBI removes web shells from compromised Exchange servers

FBI removes web shells from compromised Exchange servers

Authorities step in to thwart attacks leveraging the recently-disclosed Microsoft Exchange Server vulnerabilities

Amer Owaida14 Apr 2021


Backdoor added to PHP source code in Git server breach

Backdoor added to PHP source code in Git server breach

Backdoor added to PHP source code in Git server breach

Had the incident gone unnoticed, the attackers could have taken over websites using the tainted code

Amer Owaida30 Mar 2021


7 ways malware can get into your device

7 ways malware can get into your device

7 ways malware can get into your device

You know that malware is bad, but are you also aware of the various common ways in which it can infiltrate your devices?

Amer Owaida23 Dec 2020


Stantinko’s new cryptominer features unique obfuscation techniques

Stantinko’s new cryptominer features unique obfuscation techniques

Stantinko’s new cryptominer features unique obfuscation techniques

ESET researchers bring to light unique obfuscation techniques discovered in the course of analyzing a new cryptomining module distributed by the Stantinko group’s botnet

Vladislav Hrčka19 Mar 2020


Guildma: The Devil drives electric

Guildma: The Devil drives electric

Guildma: The Devil drives electric

The fourth installment of our occasional series demystifying Latin American banking trojans

ESET Research05 Mar 2020


Banking Trojans continue to surface on Google Play

Banking Trojans continue to surface on Google Play

Banking Trojans continue to surface on Google Play

The malicious apps have all been removed from the official Android store but not before the apps were installed by almost 30,000 users

Lukas Stefanko24 Oct 2018


VestaCP compromised in a new supply-chain attack

VestaCP compromised in a new supply-chain attack

VestaCP compromised in a new supply-chain attack

Customers see their admin credentials stolen and their servers infected with Linux/ChachaDDoS

Marc-Etienne M.Léveillé18 Oct 2018