Agenda

Targeted APTs against financial institutions in a time of Covid-19

Wed Oct 28 / 11:05 - 11:35 CEST
05. Peter Kruse (CSIS security Group A/S) - Head of CSIS eCrime Unit

Peter Kruse (CSIS security Group A/S)

Head of CSIS eCrime Unit

A presentation focusing on “Operation Interception”, a sophisticated, targeted attack on high-profile European aerospace & defense companies; a sector that is a prime target for cyber-espionage activities. Attackers used a multifaceted combination of highly targeted and extraordinary social engineering with fake recruiters via LinkedIn (fake competitor job offers) and sophisticated, custom-made malware. Since the publication of our initial report, we’ve learned that the groups activities were far more widespread than initially thought. 

We give an update on other threat actors who have been very active in the past few months, detail a new campaign targeting an EU country using a new backdoor, as well as discuss recent activities observed from TA-410 and Gamaredon threat actors.



Jean-Ian Boutin leads the Threat Research department at ESET, Boutin investigates trends in malware, reverse-engineers binaries and finds effective techniques to counter new threats. He has presented at several high-profile security conferences, including Black Hat, RSA, REcon, BlueHat, Virus Bulletin and ZeroNights. Boutin also acts as liaison between Research and Business divisions at ESET.