ESET Research: Ukraine hit by destructive attacks before and during the Russian invasion with HermeticWiper and IsaacWiper

A second wiping attack via IsaacWiper started shortly after the Russian military invasion and hit a Ukrainian governmental network. On February 23, a destructive campaign using HermeticWiper (along with HermeticWizard and HermeticRansom) targeted multiple Ukrainian organizations. This cyberattack preceded the start of the Russian invasion of Ukraine by a few hours. · HermeticWiper wipes itself … More ESET Research: Ukraine hit by destructive attacks before and during the Russian invasion with HermeticWiper and IsaacWiper

Certificates stolen from Taiwanese tech-companies misused in Plead malware campaign

D-Link and Changing Information Technologies code-signing certificates stolen and abused by highly skilled cyberespionage group focused on East Asia, particularly Taiwan. ESET researchers have discovered a new malware campaign misusing stolen digital certificates. We spotted this malware campaign when our systems marked several files as suspicious. Interestingly, the flagged files were digitally signed using a valid … More Certificates stolen from Taiwanese tech-companies misused in Plead malware campaign

Latest Irish Revenue scam: HTTPS doesn’t always mean you’re safe!

ESET Ireland warns of an Irish Revenue phishing scam, that is using compromised HTTPS secured websites for its dirty work. Internet security experts from ESET Ireland are warning Irish computer users about an online scam, that uses a forged Irish Tax and Customs email, to redirect victims to compromised valid HTTPS secured websites hosting the … More Latest Irish Revenue scam: HTTPS doesn’t always mean you’re safe!