Lukas Stefanko

Lukas Stefanko

Malware Researcher


Education: Masters in Informatic Engineering of the Technical University in Kosice

Highlights of your career? Malware Researcher

Position and history at ESET? Joined ESET as a Malware Researcher in 2011

What malware do you hate the most? Adware and ransomware

Favorite activities? Gym, squash, reading

What is your golden rule for cyberspace? Be reasonably paranoid

Favorite computer game/activity? Elasto Mania


79 articles by Lukas Stefanko

StrongPity espionage campaign targeting Android users

StrongPity espionage campaign targeting Android users

StrongPity espionage campaign targeting Android users

ESET researchers identified an active StrongPity campaign distributing a trojanized version of the Android Telegram app, presented as the Shagle app – a video-chat service that has no app version

Lukas Stefanko10 Jan 202311 min. read


Bahamut cybermercenary group targets Android users with fake VPN apps

Bahamut cybermercenary group targets Android users with fake VPN apps

Bahamut cybermercenary group targets Android users with fake VPN apps

Malicious apps used in this active campaign exfiltrate contacts, SMS messages, recorded phone calls, and even chat messages from apps such as Signal, Viber, and Telegram

Lukas Stefanko23 Nov 20229 min. read


Domestic Kitten campaign spying on Iranian citizens with new FurBall malware

Domestic Kitten campaign spying on Iranian citizens with new FurBall malware

Domestic Kitten campaign spying on Iranian citizens with new FurBall malware

APT-C-50’s Domestic Kitten campaign continues, targeting Iranian citizens with a new version of the FurBall malware masquerading as an Android translation app

Lukas Stefanko20 Oct 20226 min. read


3 most dangerous types of Android malware

3 most dangerous types of Android malware

3 most dangerous types of Android malware

Here's what you should know about some of the nastiest mobile malware around – from malicious software that takes phones and data hostage to RATs that allow hackers to control devices remotely

Lukas Stefanko04 May 20221 min. read


Fake e-shops on the prowl for banking credentials using Android malware

Fake e-shops on the prowl for banking credentials using Android malware

Fake e-shops on the prowl for banking credentials using Android malware

ESET researchers analyzed three malicious applications targeting customers of eight Malaysian banks

Lukas Stefanko06 Apr 20226 min. read


Crypto malware in patched wallets targeting Android and iOS devices

Crypto malware in patched wallets targeting Android and iOS devices

Crypto malware in patched wallets targeting Android and iOS devices

ESET Research uncovers a sophisticated scheme that distributes trojanized Android and iOS apps posing as popular cryptocurrency wallets

Lukas Stefanko24 Mar 202214 min. read


BladeHawk group: Android espionage against Kurdish ethnic group

BladeHawk group: Android espionage against Kurdish ethnic group

BladeHawk group: Android espionage against Kurdish ethnic group

ESET researchers have investigated a mobile espionage campaign that targets the Kurdish ethnic group and has been active since at least March 2020

Lukas Stefanko07 Sep 20216 min. read


Some URL shortener services distribute Android malware, including banking or SMS trojans

Some URL shortener services distribute Android malware, including banking or SMS trojans

Some URL shortener services distribute Android malware, including banking or SMS trojans

On iOS we have seen link shortener services pushing spam calendar files to victims’ devices.

Lukas Stefanko20 Jul 202113 min. read


Android stalkerware threatens victims further and exposes snoopers themselves

Android stalkerware threatens victims further and exposes snoopers themselves

Android stalkerware threatens victims further and exposes snoopers themselves

ESET research reveals that common Android stalkerware apps are riddled with vulnerabilities that further jeopardize victims and expose the privacy and security of the snoopers themselves

Lukas Stefanko17 May 20213 min. read