Award-winning news, views, and insight from the ESET security community
Damien Schaeffer • 14 May 2026 • 8 min. read
ESET Research
FrostyNeighbor: Fresh mischief and digital shenanigans
Lukas Stefanko • 07 May 2026 • 7 min. read
Fake call logs, real payments: How CallPhantom tricks Android users
Filip Jurčacko • 05 May 2026 • 11 min. read
A rigged game: ScarCruft compromises gaming platform in a supply-chain attack
Business Security
Virtual machines, virtually everywhere – and with real security gaps
Cyber fallout from the Iran war: What to have on your radar
ESET researchers uncovered new activities attributed to FrostyNeighbor, updating its compromise chain to support the group’s continual cyberespionage operations
Damien Schaeffer • 14 May 2026
Privacy
Eyes wide open: How to mitigate the security and privacy risks of smart glasses
Smart glasses allow anyone to track and record the world around them. That could put your data and the privacy of those nearby at risk.
Phil Muncaster • 11 May 2026
ESET researchers uncovered fraudulent apps on Google Play that claim to provide the call history “for any number” and had been downloaded more than seven million times before being taken down
Lukas Stefanko • 07 May 2026
Digital Security
Fixing the password problem is as easy as 123456
How come it’s still possible to ‘secure’ an online account with a six-digit string?
Tony Anscombe • 07 May 2026
ESET researchers have investigated an ongoing attack by the ScarCruft APT group that targets the Yanbian region via backdoor-laced Windows and Android games
Filip Jurčacko • 05 May 2026
Video
This month in security with Tony Anscombe – April 2026 edition
Warnings about helpdesk impersonation scams and Iran-linked hackers targeting critical sectors in the US, plus the most damaging scams of 2025 - here's some of what made the headlines this month
Editor • 30 Apr 2026
Ransomware
The calm before the ransom: What you see is not all there is
A breach claims the systems as well as the confidence that was, in retrospect, a major vulnerability
Tomáš Foltýn • 24 Apr 2026
GopherWhisper: A burrow full of malware
ESET Research has discovered a new China-aligned APT group that we’ve named GopherWhisper, which targets Mongolian governmental institutions
Eric Howard • 23 Apr 2026
New NGate variant hides in a trojanized NFC payment app
ESET researchers discover another iteration of NGate malware, this time possibly developed with the assistance of AI
Lukas Stefanko • 21 Apr 2026
What the ransom note won’t say
An attack is what you see, but a business operation is what you’re up against
Tomáš Foltýn • 20 Apr 2026
Scams
That data breach alert might be a trap
Ignoring a real breach notification invites risk, but falling for a bogus one could be even worse. Stop reacting on autopilot.
Phil Muncaster • 17 Apr 2026
Supply chain dependencies: Have you checked your blind spot?
Your biggest risk may be a vendor you trust. How can SMBs map their third-party blind spots and build operational resilience?
Tony Anscombe • 16 Apr 2026
Sign up for our newsletters