Mathieu Tartare

Mathieu Tartare

Senior Malware Researcher


Education PhD in Physics on the search for ultra-high energy neutrinos at the Pierre Auger observatory.

Highlights of your career Joining ESET.

Position and history at ESET Joined ESET as a Malware Researcher in 2018.

What malware do you hate the most? Malware targeting persecuted minorities.

Favorite activities Reading, travelling.

Golden rule for cyberspace Never think you cannot be fooled.

When did you get your first computer and what kind was it? In the late 80s, our family computer was an Apple IIe with 128 KB of RAM and a ~1 MHz processor.

Favorite computer game/activity Final Fantasy VII.


8 articles by Mathieu Tartare

ESET research

You never walk alone: The SideWalk backdoor gets a Linux variant

You never walk alone: The SideWalk backdoor gets a Linux variant

ESET research

You never walk alone: The SideWalk backdoor gets a Linux variant

ESET researchers have uncovered another tool in the already extensive arsenal of the SparklingGoblin APT group: a Linux variant of the SideWalk backdoor

Vladislav Hrčka, Thibaut Passilly, Mathieu Tartare14 Sep 202210 min. read


ESET research

The SideWalk may be as dangerous as the CROSSWALK

The SideWalk may be as dangerous as the CROSSWALK

ESET research

The SideWalk may be as dangerous as the CROSSWALK

Meet SparklingGoblin, a member of the Winnti family

Thibaut Passilly and Mathieu Tartare24 Aug 202115 min. read


ESET research

Exchange servers under siege from at least 10 APT groups

Exchange servers under siege from at least 10 APT groups

ESET research

Exchange servers under siege from at least 10 APT groups

ESET Research has found LuckyMouse, Tick, Winnti Group, and Calypso, among others, are likely using the recent Microsoft Exchange vulnerabilities to compromise email servers all around the world

Matthieu Faou, Thomas Dupuy, Mathieu Tartare10 Mar 202115 min. read


ESET research

Operation StealthyTrident: corporate software under attack

Operation StealthyTrident: corporate software under attack

ESET research

Operation StealthyTrident: corporate software under attack

LuckyMouse, TA428, HyperBro, Tmanger and ShadowPad linked in Mongolian supply-chain attack

Mathieu Tartare10 Dec 202012 min. read


ESET research

No “Game over” for the Winnti Group

No “Game over” for the Winnti Group

ESET research

No “Game over” for the Winnti Group

The notorious APT group continues to play the video game industry with yet another backdoor

Mathieu Tartare and Martin Smolár21 May 202014 min. read


ESET research

Winnti Group targeting universities in Hong Kong

Winnti Group targeting universities in Hong Kong

ESET research

Winnti Group targeting universities in Hong Kong

ESET researchers uncover a new campaign of the Winnti Group targeting universities and using ShadowPad and Winnti malware

Mathieu Tartare31 Jan 202010 min. read


ESET research

Winnti Group's skip-2.0: A Microsoft SQL Server backdoor

Winnti Group's skip-2.0: A Microsoft SQL Server backdoor

ESET research

Winnti Group's skip-2.0: A Microsoft SQL Server backdoor

Notorious cyberespionage group debases MSSQL

Mathieu Tartare21 Oct 20198 min. read


ESET research

Connecting the dots: Exposing the arsenal and methods of the Winnti Group

Connecting the dots: Exposing the arsenal and methods of the Winnti Group

ESET research

Connecting the dots: Exposing the arsenal and methods of the Winnti Group

New ESET white paper released describing updates to the malware arsenal and campaigns of this group known for its supply-chain attacks

Marc-Etienne M.Léveillé and Mathieu Tartare14 Oct 20196 min. read