ESET Blog

Security news and insight from the ESET security community

ESET Research

OceanLotus: From external espionage to domestic targeting

OceanLotus: From external espionage to domestic targeting

OceanLotus: From external espionage to domestic targeting

A shift in operational pattern of the infamous Vietnam-aligned APT group

ESET Blog11. Jun 202616 min read


ESET APT Activity Report Q4 2025–Q1 2026

ESET APT Activity Report Q4 2025–Q1 2026

ESET APT Activity Report Q4 2025–Q1 2026

An overview of the activities of selected APT groups investigated and analyzed by ESET Research in Q4 2025 and Q1 2026

ESET Blog28. May 20265 min read


Webworm: New burrowing techniques

Webworm: New burrowing techniques

Webworm: New burrowing techniques

ESET researchers describe new tools and techniques that the Webworm APT group recently added to its arsenal

ESET Blog20. May 202623 min read


FrostyNeighbor: Fresh mischief and digital shenanigans

FrostyNeighbor: Fresh mischief and digital shenanigans

FrostyNeighbor: Fresh mischief and digital shenanigans

ESET researchers uncovered new activities attributed to FrostyNeighbor, updating its compromise chain to support the group’s continual cyberespionage operations

ESET Blog14. May 202612 min read


Fake call logs, real payments: How CallPhantom tricks Android users

Fake call logs, real payments: How CallPhantom tricks Android users

Fake call logs, real payments: How CallPhantom tricks Android users

ESET researchers uncovered fraudulent apps on Google Play that claim to provide the call history “for any number” and had been downloaded…

ESET Blog7. May 202612 min read


A rigged game: ScarCruft compromises gaming platform in a supply-chain attack

A rigged game: ScarCruft compromises gaming platform in a supply-chain attack

A rigged game: ScarCruft compromises gaming platform in a supply-chain attack

ESET researchers have investigated an ongoing attack by the ScarCruft APT group that targets the Yanbian region via backdoor-laced Windows and Android…

ESET Blog5. May 202621 min read


GopherWhisper: A burrow full of malware

GopherWhisper: A burrow full of malware

GopherWhisper: A burrow full of malware

ESET Research has discovered a new China-aligned APT group that we’ve named GopherWhisper, which targets Mongolian governmental institutions

ESET Blog23. Apr 20267 min read


New NGate variant hides in a trojanized NFC payment app

New NGate variant hides in a trojanized NFC payment app

New NGate variant hides in a trojanized NFC payment app

ESET researchers discover another iteration of NGate malware, this time possibly developed with the assistance of AI

ESET Blog21. Apr 202611 min read


EDR killers explained: Beyond the drivers

EDR killers explained: Beyond the drivers

EDR killers explained: Beyond the drivers

ESET researchers dive deeper into the EDR killer ecosystem, disclosing how attackers abuse vulnerable drivers

ESET Blog19. Mar 202627 min read


Sednit reloaded: Back in the trenches

Sednit reloaded: Back in the trenches

Sednit reloaded: Back in the trenches

The resurgence of one of Russia’s most notorious APT groups

ESET Blog10. Mar 202615 min read


ESET Eesti Blogi