Digital Forensics and Incident Response Specialist
Ahmad Zaidi Said, a Malaysian cybersecurity expert with broad international experience, has more than 14 years of knowledge and experience in the field and has been involved in high-profile cybersecurity incident investigations globally. Joined Kaspersky Global Emergency Response Team (GERT) in 2021 as Digital Forensics and Incident Response (DFIR) specialist, Zaidi brings valuable experience in a variety of cyber security domains, including digital forensics and incident response (DFIR), malware analysis and reverse engineering, threat intelligence, and threat hunting Zaidi is a committee member of the Malaysia Cyber Security Community Organization (MCCO) & rawSEC and active member of the High Technology Cyber Investigation Association (HTCIA), which contribute to the evolution of the cybersecurity ecosystem through information sharing and collaboration. His expertise has also led him to speak at a number of international and local events, in which he has offered vital insights and best practises with a wide range of audiences.Kaspersky proporciona información sobre la actividad y los TTPs del APT BlindEagle. Grupo que apunta a organizaciones e individuos en Colombia, Ecuador, Chile, Panamá y otros países de América Latina.
Hemos elaborado este informe con el propósito de compartir información de inteligencia avanzada para hacer frente a los grupos de APT asiáticos.
Encontramos una imagen de firmware de la UEFI infectada con un implante malicioso, es el objeto de esta investigación. Hasta donde sabemos, este es el segundo caso conocido en que se ha detectado un firmware malicioso de la UEFI usado por un actor de amenazas.
RevengeHotels es una campaña de cibercrimen mediante malware, dirigida contra hoteles, hostales y empresas de turismo y hostelería ubicados sobre todo, pero no solo, en Brasil. Hemos confirmado que han caído víctimas más de 20 marcas de hoteles.