Espionage toolkit targeting Central and Eastern Europe uncovered

Over the course of the last year, ESET has detected and analyzed several instances of malware used for targeted espionage – dubbed SBDH toolkit. Using powerful filters, various methods of communication with its operators and an interesting persistence technique, it aims to exfiltrate selected files from governmental and public institutions, which are mostly focused on … More Espionage toolkit targeting Central and Eastern Europe uncovered

Webcam hacker spent up to 12 hours a day watching his victims

A hacker who used the notorious Blackshades RAT malware to hijack webcams on computers, and secretly watch people engaged in sexual activity, has avoided prison. Stefan Rigo, of Leeds in the United Kingdom, was said to have voyeuristically observed his victims – over half of whom were personally known to him – for between five … More Webcam hacker spent up to 12 hours a day watching his victims

Operation Potao Express: Analysis of a cyber-espionage toolkit

Attackers spying on high-value targets in Ukraine, Russia and Belarus, and their TrueCrypt-encrypted data We presented our initial findings based on research into the Win32/Potao malware family in June, in our CCCC 2015 presentation in Copenhagen. Today, we are releasing the full whitepaper on the Potao malware with additional findings, the cyberespionage campaigns where it was … More Operation Potao Express: Analysis of a cyber-espionage toolkit

Dino – the latest spying malware from an allegedly French espionage group analysed

In this blog we describe a sophisticated backdoor, called Dino by its creators. We believe this malicious software has been developed by the Animal Farm espionage group, who also created the infamous Casper, Bunny and Babar malware. Dino contains interesting technical features, and also a few hints that the developers are French speaking. Animal Farm … More Dino – the latest spying malware from an allegedly French espionage group analysed

FinSpy and FinFisher spy on you via your cellphone and PC

We read that “FinFisher spyware made by U.K.-based Gamma Group can take control of a range of mobile devices, including Apple Inc.’s iPhone and Research in Motion Ltd.’s BlackBerry…”, at the opening of a Bloomberg article that several readers of the ESET blog sent us yesterday, along with a number of questions that boil down … More FinSpy and FinFisher spy on you via your cellphone and PC