Agenda

European diplomats under (Cobalt) Strike

Wed Oct 27 / 15:10 - 15:30 CEST
09. Matthieu Faou (ESET) - Senior Malware Researcher

Matthieu Faou (ESET)

Senior Malware Researcher

At the end of 2020, a massive supply-chain attack was discovered in a software developed by SolarWinds. It enabled the Dukes (aka Nobellium) to compromise the network of several US government agencies and private companies, some in the technology sector. However, the threat actor didn’t stop there.

In recent months, the Dukes launched several spearphishing campaigns targeting European diplomats, think tanks and international organizations. ESET researchers identified victims in more than 12 different European countries. In this presentation, we will cover these latest activities and provide an overview of the global operations of the group.

Matthieu Faou is a malware researcher at ESET specializing in targeted attacks. His main duties include threat hunting and reverse engineering APTs. He finished his Master’s degree in computer science at École Polytechnique de Montréal, Canada and at École des Mines de Nancy, France in 2016. In the past, he has spoken at multiple conferences including BlueHat, RECON, Virus Bulletin, and Botconf.