ESET Research


2283 articles

Buhtrap backdoor and Buran ransomware distributed via major advertising platform

Buhtrap backdoor and Buran ransomware distributed via major advertising platform

Buhtrap backdoor and Buran ransomware distributed via major advertising platform

Criminal activities against accountants on the rise – Buhtrap and RTM still active

ESET Research30 Apr 2019


OceanLotus: macOS malware update

OceanLotus: macOS malware update

OceanLotus: macOS malware update

Latest ESET research describes the inner workings of a recently found addition to OceanLotus’s toolset for targeting Mac users

Romain Dumont09 Apr 2019


Fake or Fake: Keeping up with OceanLotus decoys

Fake or Fake: Keeping up with OceanLotus decoys

Fake or Fake: Keeping up with OceanLotus decoys

ESET researchers detail the latest tricks and techniques OceanLotus uses to deliver its backdoor while staying under the radar

Romain Dumont20 Mar 2019


Gaming industry still in the scope of attackers in Asia

Gaming industry still in the scope of attackers in Asia

Gaming industry still in the scope of attackers in Asia

Asian game developers again targeted in supply-chain attacks distributing malware in legitimately signed software

Marc-Etienne M.Léveillé11 Mar 2019


ML-era in cybersecurity: A step toward a safer world or the brink of chaos?

ML-era in cybersecurity: A step toward a safer world or the brink of chaos?

ML-era in cybersecurity: A step toward a safer world or the brink of chaos?

As the use of this technology grows so does the risk that attackers may hijack it

Juraj Jánošík22 Feb 2019


Navigating the murky waters of Android banking malware

Navigating the murky waters of Android banking malware

Navigating the murky waters of Android banking malware

An interview with ESET malware researcher Lukáš Štefanko about Android banking malware, the topic of his latest white paper

Lukas Stefanko15 Feb 2019


First clipper malware discovered on Google Play

First clipper malware discovered on Google Play

First clipper malware discovered on Google Play

Cryptocurrency stealers that replace a wallet address in the clipboard are no longer limited to Windows or shady Android app stores

Lukas Stefanko08 Feb 2019


DanaBot updated with new C&C communication

DanaBot updated with new C&C communication

DanaBot updated with new C&C communication

ESET researchers have discovered new versions of the DanaBot Trojan, updated with a more complicated protocol for C&C communication and slight modifications to architecture and campaign IDs

ESET Research07 Feb 2019


“Love you” malspam gets a makeover for massive Japan-targeted campaign

“Love you” malspam gets a makeover for massive Japan-targeted campaign

“Love you” malspam gets a makeover for massive Japan-targeted campaign

ESET researchers have detected a substantial new wave of the “Love you” malspam campaign, updated to target Japan and spread GandCrab 5.1

Juraj Jánošík30 Jan 2019