Michal Malík Profile
Michal Malík

@michalmalik

Followers
2K
Following
3K
Media
440
Statuses
3K

Senior Detection Engineer at @ESETResearch

Bratislava
Joined October 2010
Don't wanna be here? Send us removal request.
@michalmalik
Michal Malík
6 years
We analyzed a new miner for macOS and Windows that uses QEMU and VirtualBox to mine inside a virtual machine and comes bundled with pirated copies of VST software
Tweet card summary image
welivesecurity.com
The story of a Linux miner bundled with pirated copies of VST (Virtual Studio Technology) software for Windows and macOS
2
26
49
@michalmalik
Michal Malík
1 year
RT @welivesecurity: #Breaking: ESET researchers discover a #0day exploit for #Telegram that targets a vulnerability they named #EvilVideo a….
0
14
0
@michalmalik
Michal Malík
1 year
no
Tweet media one
11
165
2K
@michalmalik
Michal Malík
1 year
RT @virusbtn: ESET researchers discovered two previously unknown backdoors, LunarWeb and LunarMail, compromising a European ministry of for….
0
35
0
@michalmalik
Michal Malík
1 year
RT @ESETresearch: We can also confirm hosting the Linux kernel source code repository, was a victim of Ebury betwe….
0
14
0
@michalmalik
Michal Malík
1 year
RT @jiboutin: Our new APT activity report is available now, with updates from #ESET researchers on the various threat actors we track. Chec….
0
6
0
@michalmalik
Michal Malík
1 year
RT @alexnpress: ok wow I have wanted a reporter to write about this for YEARS
Tweet card summary image
theverge.com
How one crew risked radiation, storms, and currents to save Japan from digital isolation.
0
793
0
@michalmalik
Michal Malík
1 year
Tweet media one
@c0m0r1
c0m0r1
1 year
17 yrs of KASLR bypasses was a total waste of time 🫤.
0
2
4
@michalmalik
Michal Malík
1 year
RT @disruptnhandlr: I'm embarrassed to say it, but I didn't have a robust intuition about stack frames, unwinding and exception handling st….
0
27
0
@michalmalik
Michal Malík
1 year
RT @apenwarr: Jia Tan found a way to get paid to work on open source. Why can't you.
0
520
0
@michalmalik
Michal Malík
1 year
RT @gynvael: Some notes from analyzing the bash part obfuscation of the xz/liblzma part – link leads to the part I found most interesting –….
0
109
0
@michalmalik
Michal Malík
1 year
RT @gynvael: Boosting signal for folks analyzing liblzma/xz:.q3k: "I have managed to extract a list of encoded strings within the liblzma/x….
social.hackerspace.pl
I have managed to extract a list of encoded strings within the liblzma/xz backdoor payload (5.6.1): https://gist.github.com/q3k/af3d93b6a1f399de28fe194add452d01 The code has a dictionary of strings...
0
51
0
@michalmalik
Michal Malík
1 year
Impressive.
@oss_security
Open Source Security mailing list
1 year
Backdoor in upstream xz/liblzma leading to ssh server compromise
0
0
2
@michalmalik
Michal Malík
2 years
RT @ESETresearch: #ESETresearch will present at Black Hat USA 2023. On August 10th, @matthieu_faou will talk about #MoustachedBouncer: AitM….
0
19
0
@michalmalik
Michal Malík
2 years
RT @ESETresearch: #ESETResearch warns about a CPIO archive named “Jump Crypto Investment uploaded to VirusTotal fr….
0
42
0
@michalmalik
Michal Malík
2 years
RT @ESETresearch: #ESETResearch warns about an ongoing campaign distributing password and cryptocurrency stealing malware via @PyPI. #Pytho….
0
57
0
@michalmalik
Michal Malík
2 years
RT @marc_etienne_: Yet another Lazarus-related finding this week. Seems like this group doesn't mind being loud. Social engineering targets….
0
2
0