Incident Response Specialist, GERT
Cristian Souza is an Incident Response Specialist at Kaspersky’s Global Emergency Response Team (GERT). He holds a degree in Computer Networks and is currently pursuing a Ph.D. in Computer Science at the University of São Paulo (USP). Cristian’s primary responsibilities include conducting forensic analysis of critical incidents, identifying their root causes, and performing malware reverse engineering. An active contributor to the cyber security community, Cristian has published several research papers and holds certifications including CISSP, GCFA, GREM, and GXPN.According to Kaspersky, Librarian Ghouls APT continues its series of attacks on Russian entities. A detailed analysis of a malicious campaign utilizing RAR archives and BAT scripts.
Kaspersky GReAT experts uncovered a new campaign by Lazarus APT that exploits vulnerabilities in South Korean software products and uses a watering hole approach.
MysterySnail RAT attributed to IronHusky APT group hasn’t been reported since 2021. Recently, Kaspersky GReAT detected new versions of this implant in government organizations in Mongolia and Russia.
Kaspersky researchers analyze GOFFEE’s campaign in H2 2024: the updated infection scheme, new PowerModul implant, switch to a binary Mythic agent.