×
ItalianoEnglish
Set as default language

Grandangolo Communications

  • Home
  • Company
  • Services
    • Public Relation
    • Digital PR
    • Marketing
    • Lead Generation
    • Events
  • Best Practice
  • Customer Press Room
  • Contacts
  • Languages
  • Home
  • Customer Press Room
  • Eset
  • ESET Threat Report: Decrease in RDP attacks and reduce the impact of malware related to the Russia-Ukraine conflict

Customer Press Room

ESET Threat Report: Decrease in RDP attacks and reduce the impact of malware related to the Russia-Ukraine conflict

by Grandangolo Communications / Thursday, 06 October 2022 / Published in Eset

Further decrease in RDP attack attempts (-89%); decline in politically motivated ransomware; Emotet continued to be active; sixfold increase in shipping-themed phishing URLs; the well-known web skimmer Magecart accounted for three-quarters of all banking malware detections; Despite the decline in threats to cryptocurrencies and the price of bitcoin, the Cryptostealer category has grown by almost 50%.

ESET, global leader in the cybersecurity market, published the Threat Report T2 2022, which summarizes trends observed by its detection systems and highlights advances in ESET cybersecurity research. The latest edition of the ESET Threat Report (which covers the period from May to August 2022) sheds light on how ideological ransomware has changed, on Emotet's activity, on the most used phishing baits, on how the collapse in cryptocurrency exchange rates has affected online threats and on the continued sharp decline in attacks via Remote Desktop Protocol (RDP). ESET analysts attribute the decrease in this type of attacks to the conflict between Russia and Ukraine, as well as the return to in-person work in offices after the pandemic and the general improvement in the security of company spaces.

Even though the numbers have been declining, Russian IP addresses have continued to be responsible for the majority of RDP attacks. "In Q1 2022, Russia was the country most targeted by ransomware, with attacks driven by political or ideological reasons related to the conflict. The new Report shows that this wave of hacktivismo decreased in Q2 and that ransomware operators have turned their attention to the United States, China and Israel,” he explains Roman Kováč, Chief Research Officer di ESET.

According to ESET telemetry, August was a month of rest for the operators of Emotet, the most active downloader group. Its authors also had to adapt to Microsoft's decision to disable VBA macros in documents coming from the Internet and focused on campaigns based on weaponized Microsoft Office files and LNK files.

The report also examines threats that primarily affect home users. ESET's phishing feeds have shown a six-fold increase in shipping-themed phishing baits, which in most cases present victims with false shipping address verification requests from DHL and USPS.

"When it comes to threats that directly target virtual and physical currencies, a web skimmer known as Magecart remains the main threat to the security of online shoppers' credit card data. We have also seen a doubling of cryptocurrency-themed phishing baits and an increase in the number of cryptostealers," explains Kováč.

The Threat Report T2 2022 also reviews the most important findings and results obtained by ESET specialists. These include the discovery of a previously unknown macOS backdoor later attributed to ScarCruft; of an updated version of the Sandworm APT group's ArguePatch malware loader and a Lazarus payload in Trojan-affected apps. The researchers then analyzed an instance of the Lazarus Operation In(ter)ception campaign that targeted macOS devices during spearphishing in crypto-waters. ESET researchers also discovered buffer overflow vulnerabilities in Lenovo's UEFI firmware and a new campaign using a fake Salesforce update as bait.

The report also contains an overview of the numerous speeches held by ESET researchers in recent months and anticipates their participation in AVAR, Ekoparty and many other in-depth meetings.

For more information, see l’ESET Threat Report T2 2022 su WeLiveSecurity.

Tagged under: cybersecurity, Eset

About Grandangolo Communications

What you can read next

ESET gets the recognition of "Customers' Choice in the Gartner® Peer Insights ™ Voice of the Customer Report 2023
ESET Research: Botnet Ebury is active and growing. 400 thousand violated Linux servers for cryptocurrency theft and profitless purpose
ESET and Borussia Dortmund renewed the partnership until 2025

Customer Press Room

  • Arrow Electronics has been awarded by Equinix as Distributor of the Year 2025 for the EMEA region

    Arrow Electronics, a global supplier of technology...
  • SentinelOne makes the Purple AI Agentic Investigation solution available to all customers, bringing the latest generation AI directly into the SOC

    The investigations, started autonomously and without need...
  • Acronis TRU reveals the ongoing evolution of the INC ransomware group

    A recent report published by Acronis Threat ...
  • ESET Research investigates the Gentlemen ransomware author group and its defense evasion tools

    The Gentlemen Group develops, maintains and supplies...
  • Imprivata presents the Agentic Identity Management solution to protect and govern the access of AI agents

    Imprivata, a leading company in Ac...

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • July 2019
  • June 2019
  • May 2019
  • April 2019
  • March 2019
  • February 2019
  • January 2019
  • December 2018

Categories

  • A10
  • abstract
  • Abstract
  • Acronis
  • Ally Consulting
  • Arrow
  • Arrow Electronics
  • Axiante
  • Babel
  • Computer Center
  • Cohesity
  • Italy Cloud Consortium
  • Consys
  • D-Link
  • Eset
  • G.B. Service
  • Habble
  • HiSolution
  • HYCU
  • Icos
  • Imprivate
  • Information Tecnology
  • Innovaway
  • Ivanti
  • Link11
  • MobileIron
  • Netalia
  • Nethive
  • Nexthink
  • Nuvis
  • Praim
  • QAD
  • Qualys
  • Red Hot Cyber
  • Riverbed
  • Saviynt
  • Sensormatic
  • SentinelOne
  • Talent Software
  • Vectra
  • Vectra AI
  • Vertiv

Office printing, digital PR, marketing, lead generation: all projects are born from our passion and expertise, with an inevitable touch of creativity and innovation.

COMPANY

Grandangolo Communications Srl
Via Sardegna 19
20146 Milano
Telephone +39 335 8283393
info@grandangolo.it

I SERVIZI

  • Home
  • Company
  • Services
  • Best Practice
  • Customer Press Room
  • Contacts
  • Languages

CONTACTS

  • Contacts
  • Cookie policy
  • Privacy policy

© 2019 GRANDANGOLO COMMUNICATIONS SRL | P.IVA IT 06394850967 | All rights reserveD.

Powered by Webpowerplus

TOP