ESET Distributor’s Systems Abused to Deliver Wiper Malware 

October 21, 2024 at 09:16AM ESET is investigating a situation where a product distributor in Israel sent emails containing wiper malware. This incident involved the abuse of the distributor’s systems. The details are reported in a post by SecurityWeek. ### Meeting Notes Takeaways: 1. **Investigation Initiated**: ESET has launched an investigation regarding a security incident … Read more

ESET-Branded Wiper Attack Targets Israel; Firm Denies Compromise

October 18, 2024 at 01:30PM ESET denies reports of a cyberattack that compromised its platforms to target Israeli customers with wiper malware. The company addressed a recent security incident involving a malicious email campaign, which was blocked quickly. ESET asserts its technology is secure, while continuing to investigate the situation with its partner. ### Meeting … Read more

Suspected Russian Data-Wiping ‘AcidPour’ Malware Targeting Linux x86 Devices

March 19, 2024 at 06:48AM A new variant of the data wiping malware AcidRain, named AcidPour, has been discovered, targeting Linux x86 devices. This ELF binary variant is designed to erase content from RAID arrays and UBI file systems. The specific targets and scale of the attacks are currently unknown. The discovery highlights the use … Read more

Pro-Iranian Hacker Group Targeting Albania with No-Justice Wiper Malware

January 6, 2024 at 02:33AM A recent cyber attack targeting Albanian organizations involved the use of a destructive wiper called No-Justice, attributed to an Iranian group called Homeland Justice. The attack aimed at entities in Albania and involved tools such as PowerShell scripts and legitimate tools for reconnaissance and remote access. Pro-Iranian threat actors have … Read more

Targeted F5 Vulnerability ‘Update’ Delivers Wiper to Israeli Victims

December 20, 2023 at 10:10AM The Israel National Cyber Directorate issued an urgent warning about a targeted email campaign impersonating F5 Networks, delivering dangerous wiper malware. The attacker capitalized on a critical F5 BIG-IP vulnerability, sending emails from “cert@f5.support” with an attached file named “update.zip.” The malware can delete F5 servers but cannot spread laterally. … Read more

Iranian Hackers Launches Destructive Cyberattacks on Israeli Tech and Education Sectors

November 6, 2023 at 06:00AM Israeli higher education and tech sectors were targeted in a series of cyber attacks by the Iranian nation-state hacking crew known as Agonizing Serpens. The attacks aimed to steal sensitive data and deploy wiper malware to cover their tracks and render infected endpoints unusable. The group has been linked to … Read more