ESET denies it was compromised as Israeli orgs targeted with 'ESET-branded' wipers
ID: 169fe558-d267-5e2b-ad78-aba885c5aa91
STIX ID: report--169fe558-d267-5e2b-ad78-aba885c5aa91
Feed Name: The Register (Security)
A targeted wiper campaign impersonated the ESET Advanced Threat Defense Team, delivering a ZIP hosted on ESET servers containing benign ESET DLLs and a malicious setup.exe that behaved like a destructive wiper (described as fake ransomware). The email passed DKIM/SPF checks and targeted Israeli cybersecurity professionals around Oct 8; researcher Kevin Beaumont linked the activity to a probable hacktivist actor (Handala). ESET denied being compromised, saying a limited malicious email campaign affecting a partner was blocked quickly and customers are protected.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
