Award-winning news, views, and insight from the ESET security community
Jean-Ian Boutin • 19 May 2025 • 3 min. read
ESET Research
Threat Reports
ESET APT Activity Report Q4 2024–Q1 2025
Matthieu Faou • 15 May 2025 • 18 min. read
Operation RoundPress
Facundo Muñoz • 30 Apr 2025 • 11 min. read
TheWizards APT group uses SLAAC spoofing to perform adversary-in-the-middle attacks
Business Security
Ransomware
Resilience in the face of ransomware: A key to business survival
Making it stick: How to get the most out of cybersecurity training
Scams
Getting off the hook: 10 steps to take after clicking on a phishing link
Phishing emails are a weapon of choice for criminals intent on stealing people’s personal data and planting malware on their devices. The healing process does not end with antivirus scanning.
Roman Cuprik • 04 Sep 2023
Video
Fake Signal and Telegram apps – Week in security with Tony Anscombe
ESET research uncovers active campaigns targeting Android users and spreading espionage code through the Google Play store, Samsung Galaxy Store and dedicated websites
Editor • 31 Aug 2023
Privacy
What you need to know about iCloud Private Relay
If you want to try to enter the world of VPNs with a small dip, then iCloud Private Relay is your friend — but is it a true VPN service? The devil is in the details.
Márk Szabó • 31 Aug 2023
BadBazaar espionage tool targets Android users via trojanized Signal and Telegram apps
ESET researchers have discovered active campaigns linked to the China-aligned APT group known as GREF, distributing espionage code that has previously targeted Uyghurs
Lukas Stefanko • 30 Aug 2023
Recovering from a supply-chain attack: What are the lessons to learn from the 3CX hack?
The campaign started with a trojanized version of unsupported financial software
Roman Cuprik • 28 Aug 2023
How a Telegram bot helps scammers target victims – Week in security with Tony Anscombe
ESET researchers uncover a Telegram bot that enables even less tech-savvy scammers to defraud people out of their money
Editor • 25 Aug 2023
Telekopye: Hunting Mammoths using Telegram bot
Analysis of Telegram bot that helps cybercriminals scam people on online marketplaces
Radek Jizba • 24 Aug 2023
Scarabs colon-izing vulnerable servers
Analysis of Spacecolon, a toolset used to deploy Scarab ransomware on vulnerable servers, and its operators, CosmicBeetle
Jakub Souček • 22 Aug 2023
A Bard’s Tale – how fake AI bots try to install malware
The AI race is on! It’s easy to lose track of the latest developments and possibilities, and yet everyone wants to see firsthand what the hype is about. Heydays for cybercriminals!
Thomas Uhlemann • 21 Aug 2023
Evacuation of 30,000 hackers – Week in security with Tony Anscombe
DEF CON, the annual hacker convention in Las Vegas, was interrupted on Saturday evening when authorities evacuated the event's venue due to a bomb threat
Editor • 18 Aug 2023
Digital Security
Secure Coding
DEF CON 31: US DoD urges hackers to go and hack ‘AI’
The limits of current AI need to be tested before we can rely on their output
Tony Anscombe • 18 Aug 2023
Mass-spreading campaign targeting Zimbra users
ESET researchers have observed a new phishing campaign targeting users of the Zimbra Collaboration email server.
Viktor Šperka • 17 Aug 2023
Sign up for our newsletters