Cyber Crime

This page lists all public cybercrime-related publications I’ve worked on through time.


How Kopeechka, an Automated Social Media Accounts Creation Service, Can Facilitate Cybercrime
 Full research
Journalists about it: TheRecordYahoo! NewsNumeramaData Security Breach

Cybercriminals Exploit the Moroccan Tragedy in New Scam Campaign

Journalists about it: NumeramaGlobal Security Mag

Impulse Team’s Massive Years-Long Mostly-Undetected Cryptocurrency Scam
Full research
(in collaboration with Joseph C. Chen)

Journalists about it: Le Monde – DarkReading – KrebsOnSecurity – TechRadar – TradingView – The Hacker News

IPFS: A New Data Frontier or a New Cybercriminal Hideout?
Full research


New RURansom Wiper Targets Russia
Full research

(in collaboration with Jaromir Horejsi)
Journalists about it: Cybernews – SCMagazine


The Risks of Subscription Sharing Platforms

Void Balaur and the Rise of the Cybermercenary Industry
SummaryFull paper
(in collaboration with Feike Hacquebord)
Journalists about it: ForbesLe Monde – Le Figaro – 20 Minutes – The Hacker News – Threat Post
TechTarget – CSO Online – BleepingComputer – The Record – DarkReading – India Times

Fake DarkSide Campaign Targets Energy and Food Sectors
Full research
Journalists about it : BleepingComputer – HelpNetSecurity – HackRead – Threat Post
Cyber Security Review – BankInfoSecurity

How Cybercriminals Abuse OpenBullet for Credential Stuffing
Full researchVideo
(in collaboration with Fyodor Yarochkin & Vladimir Kropotov)


Scammers Use Home Addresses of Targets in France
Full research
Journalists about it: Le Parisien – Ouest France – DNA

French companies Under Attack from Clever BEC Scam
Full research
Journalists about it: Le Monde – Sunbren


Advanced Targeted Attack Tools Found Being Used to Distribute Cryptocurrency Miners
Full research
(in collaboration with Fyodor Yarochkin & Vladimir Kropotov)
Journalists about it : ITWire – CyberScoop

A Hacking Group is Stealing Popular Instagram Profiles
Full research
(in collaboration with Jindrich Karasek)
Journalists about it: Digital Information World – CyberScoop


InfoSec Guide: Taking Down Fraudulent Domains (Part 2)

InfoSec Guide: Domain Monitoring — Detecting Phishing Attacks (Part 1)

Critical Infrastructures Exposed and at Risk: Energy and Water Industries
SummaryFull paper
(in collab with Stephen Hilt, Numaan Huq, Vladimir Kropotov, Robert McArdle, Roel Reyes)
Journalists about it: AP NewsIIoT WorldWaterISACMonde EconomiqueHelpNetSecurity 


New RETADUP Variants Hit South America, Turn To Cryptocurrency Mining
Full research
(in collaboration with Kenney Lu & Lenart Bermejo)

Retadup / Information Stealer Found Hitting Israeli Hospitals
Full research
Journalists about it: ZDNetLiberation – Capital – Le Parisien – ChallengesFrance24 – Avast – SecurityWeek – BleepingComputer – DarkReading

Android Backdoor GhostCtrl can Silently Record Your Audio, Video, and More
Full research
(in collaboration with Lenart Bermejo & Jordan Pan)
Journalists about it: PhonAndroid – FrAndroid – ZebulonLogithequeSecurityIntelligence (IBM)BleepingComputer – GBHackers –  HackReadDailyMailSCMagazineFossBytesThe SunInternational Business TimesZDNet


The French Underground: Under a Shroud of Extreme Caution
SummaryFull paper – French version
Journalists about it : Le Monde – BFMTVLa TribuneLa Depeche – SiliconGlobalSecurityMagTheRegisterZDNet

The French Dark Net is Looking for Grammar Police
Full research
Journalists about it: Tripwire

When Hackers Hack Each Other—A Staged Affair in the French Underground?
Full research

French Dark Bets: Betting On Euro 2016
Full research


Fake Judicial Spam Leads to Backdoor with Fake Certificate Authority
Full research
(in collaboration with Kenney Lu & Dark Luo)
Journalists about it: HelpNetSecurity – ProofPoint