Incident Response Specialist, GERT
Cristian Souza is an Incident Response Specialist at Kaspersky’s Global Emergency Response Team (GERT). He holds a degree in Computer Networks and is currently pursuing a Ph.D. in Computer Science at the University of São Paulo (USP). Cristian’s primary responsibilities include conducting forensic analysis of critical incidents, identifying their root causes, and performing malware reverse engineering. An active contributor to the cyber security community, Cristian has published several research papers and holds certifications including CISSP, GCFA, GREM, and GXPN.Kaspersky researchers analyze a range of new PebbleDash-based tools used in recent Kimsuky campaigns and reveal their connection to the AppleSeed malware cluster.
Kaspersky researchers uncovered malicious wheel packages in PyPI that targeted both Windows and Linux and contained a dropper delivering malware dubbed ZiChatBot. We attribute this activity to OceanLotus APT.
The Silver Fox group is targeting companies in Russia and India by impersonating tax authorities to distribute ValleyRAT and the new ABCDoor backdoor.
Kaspersky researchers analyze updated CoolClient backdoor and new tools and scripts used in HoneyMyte (aka Mustang Panda or Bronze President) APT campaigns, including three variants of a browser data stealer.