DFIR Group Manager, GERT, America
Eduardo Chavarro Ovalle is the DFIR Group Manager for the Americas for the GERT team. Since 2017, Eduardo has been supporting customers in the Americas to solve all kinds of incidents and events. With the help of his team, he has detected different threats directed to LATAM and shared analysis and recommendations for protection with different companies around the world. He has a degree in telecommunications engineering and owns a master's degree in information security. He specializes in incident response, digital forensics, eDiscovery, and cybersecurity management.Kaspersky researchers uncovered malicious wheel packages in PyPI that targeted both Windows and Linux and contained a dropper delivering malware dubbed ZiChatBot. We attribute this activity to OceanLotus APT.
The Silver Fox group is targeting companies in Russia and India by impersonating tax authorities to distribute ValleyRAT and the new ABCDoor backdoor.
Kaspersky researchers analyze updated CoolClient backdoor and new tools and scripts used in HoneyMyte (aka Mustang Panda or Bronze President) APT campaigns, including three variants of a browser data stealer.
Kaspersky discloses a 2025 HoneyMyte (aka Mustang Panda or Bronze President) APT campaign, which uses a kernel-mode rootkit to deliver and protect a ToneShell backdoor.