Skip to content

ESET has been recognized as a Top Player in Radicati Market Quadrant for the fifth consecutive year

BRATISLAVA, Slovakia — March 27, 2024 —  ESET, a global leader in digital security, has been named a Top Player in Radicati´s APT Protection Market Quadrant 2024, covering the advanced persistent threat (APT) protection segment of the security market. 

As stated in the Radicati report, which illustrates how individual vendors fit within specific technology markets at any given point in time, ESET is ranked among the “current market leaders with products that offer both breadth and depth of functionality, as well as possess a solid vision for the future. Top Players shape the market with their technology and strategic vision.”

Among the most appreciated of ESET´s key strengths is the unified single-click security management platform ESET PROTECT, which together with ESET Inspect delivers extended detection and response (XDR) with granular visibility, risk assessment, incident response, investigation, and remediation. The platform is available for deployment either in the cloud or on-premises, and it supports all major operating systems, such as Windows, macOS and Linux. The report further highlighted that ESET´s solutions offer multilanguage support and a large set of localized versions. Another key area that has contributed to ESET´s success is the partnership with Intel, which combines ESET Endpoint Security solutions with Intel® TDT as an additional source of threat telemetry to assist in the detection of threats that use advanced evasion techniques, such as zero-day variants, binary obfuscation, cloaking in a virtual machine, and fileless attacks.

“We are excited to be ranked as a Top Player by Radicati in the APT Protection Market Quadrant for the fifth consecutive time. With this milestone, ESET reaffirms its dedication to the development of cutting-edge security software and our commitment to innovation. We are proud to be recognized for our efforts in making technology safer for all technology users,” said Juraj Malcho, ESET’s Chief Technology Officer.

APT protection is defined as a “set of integrated solutions for the detection, prevention and possible remediation of zero-day threats and persistent malicious attacks.” Radicati, the renowned market research firm, positions vendors in the quadrant according to two criteria: functionality assessed based on the breadth and depth of features of each vendor’s solution and strategic vision, which refers to the vendor’s strategic direction.

To read more about the 2024 Radicati APT Protection Market Quadrant, please click here, and to find out more about ESET PROTECT Elite, visit our website.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.

ESET Research: AceCryptor attacks on the rise, target Central Europe, Balkans, and Spain and using Rescoms tool

  • In the second half of 2023, ESET detected multiple AceCryptor campaigns using the Rescoms remote access tool (RAT) in European countries, mainly Poland, Bulgaria, Slovakia, Spain, and Serbia.
  • The threat actor behind these campaigns in some cases abused compromised accounts to send spam emails in order to make them look as credible as possible. 
  • The goal of the spam campaigns was to obtain credentials stored in browsers or email clients, which in case of a successful compromise would open possibilities for further attacks.

BRATISLAVA — March 20, 2024 — ESET Research has recorded a dramatic increase in AceCryptor attacks, with ESET detections tripling between the first and second halves of 2023, correlating to the protection of 42,000 ESET users worldwide. Furthermore, in recent months, ESET registered a significant change in how AceCryptor is used, namely that the attackers spreading Rescoms (also known as Remcos) started utilizing AceCryptor, which was not the case beforehand. Rescoms is a remote access tool (RAT) that is often used by threat actors for malicious purposes; AceCryptor is a cryptor-as-a-service that obfuscates malware to hinder its detection. Based on the behavior of deployed malware ESET researchers assume that the goal of these campaigns was to obtain email and browser credentials for further attacks against the targeted companies. The vast majority of AceCryptor-packed Rescoms RAT samples were used as an initial compromise vector in multiple spam campaigns targeting European countries, including Central Europe (Poland, Slovakia), the Balkans (Bulgaria, Serbia), and Spain.

“In these campaigns, AceCryptor was used to target multiple European countries, and to extract information or gain initial access to multiple companies. Malware in these attacks was distributed in spam emails, which were in some cases quite convincing; sometimes the spam was even sent from legitimate, but abused, email accounts,” says ESET researcher Jakub Kaloč, who discovered the latest AceCryptor with Rescoms campaign. “Because opening attachments from such emails can have severe consequences for you or your company, we advise you to be aware about what you are opening and use reliable endpoint security software able to detect this malware,” he adds.

In the first half of 2023, the countries most affected by malware packed by AceCryptor were Peru, Mexico, Egypt, and Türkiye, with Peru, at 4,700, having the greatest number of attacks. Rescoms spam campaigns changed these statistics dramatically in the second half of the year. AceCryptor-packed malware affected mostly European countries.

AceCryptor samples that we’ve observed in the second half of 2023 often contained two malware families as their payload: Rescoms and SmokeLoader. A spike detected in Ukraine was caused by SmokeLoader. On the other hand, in Poland, Slovakia, Bulgaria, and Serbia, increased activity was caused by AceCryptor containing Rescoms as a final payload.

All spam campaigns that targeted businesses in Poland had emails with very similar subject lines about B2B offers for the victim companies. To look as believable as possible, attackers did their research and used existing Polish company names and even existing employee/owner names and contact information when signing those emails. This was done so that in the case of a victim Googling the sender’s name, the search would be successful, which might lead to the victim opening the malicious attachment.

While it is unknown whether the credentials were gathered for the group that carried out these attacks or if those stolen credentials would be later sold on to other threat actors, it is certain that successful compromise opens the possibility for further attacks, especially for ransomware attacks.

In parallel with the campaigns in Poland, ESET telemetry also registered ongoing campaigns in Slovakia, Bulgaria, and Serbia. The only significant difference, of course, was that the language used in the spam emails was localized for those specific countries. Apart from the previously mentioned campaigns, Spain also experienced a surge of spam emails with Rescoms as the final payload.

For more technical information about the AceCryptor and Rescoms RAT campaign, check out the blogpost “Rescoms rides waves of AceCryptor spam”. Make sure to follow ESET Research on Twitter (today known as X) for the latest news from ESET Research.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.

STARMUS, POWERED BY ESET, UNVEILS ITS PROGRAM FOR “STARMUS VII, THE FUTURE OF OUR HOME PLANET“

•    STARMUS will bring an inspiring debate on the future of our planet to Bratislava turning the Slovak capital into the world’s science capital for a whole week this May.
•    The world’s most ambitious science and music festival includes lectures, a music program, star gazing, and the STARMUS camp for the general public.
•    The festival will feature the Stephen Hawking Awards Ceremony, with the winners expected to be announced days before the start of the event.
•    STARMUS will bring eight Nobel laureates, astronauts, top researchers, and the greatest thought leaders in climate change, environment, artificial intelligence, and cybersecurity to the city.
•    Tickets are available through www.ticketportal.sk and have gone on sale with an early bird discount available until April 15.

BRATISLAVA – March 21, 2024 – STARMUS, powered by ESET, today announces an unparalleled program for its seventh edition which is set to be the most inspiring debate on the future of our home planet. As announced in May 2023, the prestigious STARMUS festival – the brainchild of astrophysicist Garik Israelian, PhD, and Queen guitarist Sir Brian May, PhD in astrophysics – will hold its next edition in Bratislava this May.  

STARMUS will kick off with a performance by a legendary musician to be announced soon with the full line-up, followed by a four-day program of STARMUS Exclusive Talks with more than 50 world-class speakers and world-renowned artists in Bratislava´s Ice Hockey Stadium, The Ondrej Nepela Arena.

ESET, a global leader in cybersecurity, has consistently advocated for the progress of science and its transformative impact on society. The company firmly believes in the potential of science to drive significant progress for humanity and is committed to safeguarding this progress by providing AI-native security solutions.

I believe that our role here at ESET is more than just technology development and innovation. We stand for protecting the progress society is making. And we believe this progress is brought by science. Science brings solutions to many of humanity’s challenges. The work that we do to protect our communities from cyber threats, is just a small piece of what the wider scientific community is doing to protect people from disease, help technological progress, and educate everyone around the world.”  said Richard Marko, ESET CEO,who is also giving a talk named Tech for Earth: Rethinking Cybersecurity in the Age of Global Challenges during the second day of the conference. He will be joined by Starmus speakers, including astronaut Charlie Duke and technology visionary Tony Fadell.

STARMUS, in its first edition focusing on Planet Earth, will feature Nobel laureates, such as Michel Mayor, Emmanuelle Charpentier, and Kip Thorne; astronauts who made history as part of the space race – namely Charlie Duke or Chris Hadfield– and world icons, including Jane Goodall and the music legend Sir Brian May, co-founder of the festival.

The festival will also showcase exclusive performances from the popular Californian punk-rock band The Offspring, Tony Hadley, the former lead singer of the British pop icon from the 80s Spandau Ballet, and more one-off live performances to be announced soon with the full line-up.

One of the festival’s highlights will be the ceremony for the Stephen Hawking Medal for Science Communication which awards excellence across four categories: Music & Arts, Science Writing, Films & Entertainment, and Lifetime Achievement.

This year, STARMUS, powered by ESET, is sponsored by VÚB Banka, OMEGA, and KIA Slovakia. The festival will be held under the auspices of the President of the Slovak Republic and the Mayor of Bratislava and under the patronage of the European Commission Representation in Slovakia.

Ticket Information:
Tickets, available at www.ticketportal.sk and www.starmus.com include access to all festival events. Early bird discounts are available until April 15. Student Tickets for 98 euros and General Attendees tickets for 198 euros. Subsequently, tickets will be priced at 150 euros for Students and 250 euros for General Attendees.

The tickets include STARMUS Exclusive Lectures (May 13-17), Star Party (May 14), Stephen Hawking Medial Award Ceremony & Sonic Universe Concert (May 15).

To learn more about STARMUS click here

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.

ESET has been recognized as a Leader and twice as a Major Player in three Modern Endpoint Security IDC MarketScape reports

BRATISLAVA, — March 21, 2024 —  ESET, a global leader in digital security, achieved a great success when named a Leader in IDC MarketScape: Worldwide Modern Endpoint Security for Small Businesses 2024 Vendor Assessment (doc #US50521424, March 2024). At the same time, ESET has been recognized as a Major Player in the next two IDC MarketScape reports — IDC MarketScape: Worldwide Modern Endpoint Security for Enterprises 2024 Vendor Assessment (doc #US50521223, January 2024) and IDC MarketScape: Worldwide Modern Endpoint Security for Midsize Businesses 2024 Vendor Assessment (doc #US50521323, February 2024). All these reports provide an in-depth quantitative and qualitative technology market assessments of ICT vendors for a wide range of technology markets.

According to IDC MarketScape: Worldwide Modern Endpoint Security for Small Businesses, ESET “earned its longevity and durability as a private entity by continuous evolution in its security capabilities in support of public and commercial organizations and its channel partners.”

“We are excited to be named a Leader and even twice a Major Player in the IDC MarketScape evaluation of our modern endpoint security in small business, enterprise and midsize, respectively. The cyberattacks are one of the most pertinent threats to modern businesses. Thanks to our over 30-year experience in cybersecurity, continued investment in product-directed research and development, and financial stability, we are able to ensure the highest possible level of protection for our customers and partners. We are pleased that our efforts are recognized externally too,” said Pavol Balaj, Chief Business Officer.

According to IDC MarketScape: Worldwide Modern Endpoint Security for Small Businesses, “The expansiveness of ESET’s endpoint security-focused product portfolio is a principal strength.“

“IDC commends ESET in terms of the following capabilities:

Number of endpoint protection functions (host-based FW and IDS/IPS, DNS filtering, device control, DLP and device encryption) with half of these functions offered as standard features
In-browser policy controls
Anti-phishing protections
Anti-tampering precautions
Intel TDT integration (introduced in early 2022)
Mobile threat detection
Customer security advisory recently enhanced with the commercial launch of device vulnerability management and patch management and integration with Microsoft Intune.”

To find out more about ESET´s Modern Endpoint Protection, visit the website here.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.

China-aligned Evasive Panda leverages religious festival to target and spy on Tibetans, ESET Research discovers

  • ESET Research discovered a cyberespionage campaign that leverages the Monlam Festival — a religious gathering — to target Tibetans in several countries and territories. ESET attributes this campaign with high confidence to the China-aligned Evasive Panda Advanced Persistent Threat (APT) group.
  • The attackers compromised the website of the organizer of the annual festival, which takes place in India, and added malicious code to create a watering-hole attack targeting users connecting from specific networks.
  • ESET also discovered that a software developer’s supply chain was compromised and trojanized installers for both Windows and macOS were served to users. 
  • The attackers fielded a number of malicious downloaders and full-featured backdoors for the operation, including a publicly undocumented backdoor for Windows “Nightdoor.”
  • Targeted users were located in India, Taiwan, Hong Kong, Australia, and the United States (including at Georgia Tech).

BRATISLAVA, MONTREAL — March 7, 2024 — ESET researchers have discovered a cyberespionage campaign that, since at least September 2023, has been victimizing Tibetans via a targeted watering hole (also known as a strategic web compromise), and a supply-chain compromise to deliver trojanized installers of Tibetan language translation software. The attackers aimed to deploy malicious downloaders for both Windows and macOS to compromise website visitors with MgBot as well as a backdoor that has not been publicly documented yet; ESET has named it Nightdoor. The campaign by the China-aligned Evasive Panda APT group leveraged the Monlam Festival — a religious gathering — to target Tibetans in several countries and territories. Targeted networks were located in India, Taiwan, Hong Kong, Australia, and the United States.

ESET discovered the cyberespionage operation in January 2024. The compromised website abused as a watering hole (the attacker infests a website that the victim likely or regularly uses) belongs to Kagyu International Monlam Trust, an organization based in India that promotes Tibetan Buddhism internationally. The attack might have been intended to capitalize on international interest in the Kagyu Monlam Festival that is held annually in January in the city of Bodhgaya, India. The network of the Georgia Institute of Technology (also known as Georgia Tech) in the United States is among the identified entities in the targeted IP address ranges. In the past, the university was mentioned in connection with the Chinese Communist Party’s influence on education institutes in the U.S.

Around September 2023, the attackers compromised the website of a software development company based in India that produces Tibetan language translation software. The attackers placed several trojanized applications there that deploy a malicious downloader for Windows or macOS.

In addition to this, the attackers also abused the same website and a Tibetan news website called Tibetpost to host the payloads obtained by the malicious downloads, including two full-featured backdoors for Windows and an unknown number of payloads for macOS.

“The attackers fielded several downloaders, droppers, and backdoors, including MgBot — which is used exclusively by Evasive Panda — and Nightdoor, the latest major addition to the group’s toolkit and that has been used to target several networks in East Asia,” says ESET researcher Anh Ho, who discovered the attack. “The Nightdoor backdoor, used in the supply-chain attack, is a recent addition to Evasive Panda’s toolset. The earliest version of Nightdoor that we’ve been able to find is from 2020, when Evasive Panda deployed it onto the machine of a high-profile target in Vietnam. We have requested that the Google account associated with its authorization token be taken down,” adds Ho.

With high confidence, ESET attributes this campaign to the Evasive Panda APT group, based on the malware that was used: MgBot and Nightdoor. Over the past two years, we have seen both backdoors deployed together in an unrelated attack against a religious organization in Taiwan, in which they also shared the same Command & Control server.

Evasive Panda (also known as BRONZE HIGHLAND or Daggerfly) is a Chinese-speaking and China-aligned APT group, active since at least 2012. ESET Research has observed the group conducting cyberespionage against individuals in mainland China, Hong Kong, Macao, and Nigeria. Government entities were targeted in Southeast and East Asia, specifically China, Macao, Myanmar, The Philippines, Taiwan, and Vietnam. Other organizations in China and Hong Kong were also targeted. According to public reports, the group has also targeted unknown entities in Hong Kong, India, and Malaysia.

The group uses its own custom malware framework with a modular architecture that allows its backdoor, known as MgBot, to receive modules to spy on its victims and enhance its capabilities. Since 2020 ESET has also observed that Evasive Panda has capabilities to deliver its backdoors via adversary-in-the-middle attacks hijacking updates of legitimate software.

For more technical information about the latest malicious campaign of the Evasive Panda group, check out the blogpost “Evasive Panda leverages Monlam Festival to target Tibetans” on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X) for the latest news from ESET Research.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.

×

Hello!

Click one of our contacts below to chat on WhatsApp

×