Log inSign up
Log inSign up
ESET Research
4,339 posts
ESET Research profile banner
@ESETresearch

ESET Research

@ESETresearch
Security research and breaking news straight from ESET Research Labs.
welivesecurity.com/research/
Joined July 2009
32 Following
36.2K Followers
RepliesRepliesRepostsRepostsMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·US TIDA·Ads Info·© 2026 X Corp.
  • @ESETresearch
    ESET Research
    @ESETresearch
    Oct 8
    #ESETresearch has analyzed the evolution of #MATCHBOIL, a C# downloader used by the 🇷🇺 Russia-aligned APT group UAC-0099 to download, install, and persist another payload. @reib3n1 welivesecurity.com/en/eset-resear… 1/7
    welivesecurity.com
    MATCHBOIL: New tricks, same old evil intentions
    ESET researchers document the evolution of the MATCHBOIL malware, a custom C# downloader wielded by the Russia-aligned UAC-0099 APT group.
    1
  • @ESETresearch
    ESET Research
    @ESETresearch
    Oct 6
    #ESETresearch’s Fernando Tavella will be presenting at Ekoparty in Buenos Aires, Argentina 🇦🇷. Join him in Room C3 on October 8 at 11:15 a.m. local time for “MATCHBOIL Under the Microscope: An Attribution Case Based on Code Analysis.” ekoparty.org/ekoparty-bueno… 1/5
    1
  • @ESETresearch
    ESET Research
    @ESETresearch
    Sep 17
    #ESETresearch discovered SparroWocky, a new backdoor of the #FamousSparrow APT group. This new malware has quickly replaced SparrowDoor as the 🇨🇳 China-aligned group’s flagship backdoor. welivesecurity.com/en/eset-resear… 1/6
    welivesecurity.com
    Beware the SparroWock: The backdoor that bites, the commands that catch
    ESET researchers document SparroWocky, the new flagship backdoor of the FamousSparrow APT group
    2
  • @ESETresearch
    ESET Research
    @ESETresearch
    Sep 16
    Heading to #LABScon2026? Join #ESETresearch’s Anton Cherepanov and Peter Strýček on Sept. 18 at 2:45 PM MST in Scottsdale, AZ for: Inside a Sandworm Attack: UAC-0099 Access and a Yggdrasil-backed Backdoor. 1/4
    1
  • @ESETresearch
    ESET Research
    @ESETresearch
    Sep 15
    Join #ESETresearch’s Filip Jurčacko at #LABScon2026, on Sept. 18 at 2:15 PM MST in Scottsdale, AZ for CinderRelay: The Linux Backbone of ScarCruft’s Covert Network. 1/4
    1