• Privacy Policy
  • Advertise
  • Contact Us
  • Login
Egy Economy
Advertisement
  • Egy Economy
  • Economy
    • Local
    • International
  • Stock Markets
    • Stock Exchange
    • Cash
  • Prices
  • Real Estate
  • Tech
  • Tourism
  • More
    • Opinions
    • Success Story
    • Variety
  • العربية
No Result
View All Result
  • Egy Economy
  • Economy
    • Local
    • International
  • Stock Markets
    • Stock Exchange
    • Cash
  • Prices
  • Real Estate
  • Tech
  • Tourism
  • More
    • Opinions
    • Success Story
    • Variety
  • العربية
No Result
View All Result
Egy Economy
No Result
View All Result
Home Tech

Kaspersky spot new HackingTeam spyware in the wild after years of silence

إيجى إيكونومى by إيجى إيكونومى
28 October، 2025
in Tech
0
Kaspersky spot new HackingTeam spyware in the wild after years of silence
152
SHARES
1.9k
VIEWS
Share on FacebookShare on Twitter

Kaspersky Global Research and Analysis Team (GReAT) has uncovered evidence linking the HackingTeam successor, Memento Labs, to a new wave of cyberespionage attacks. The discovery stems from an investigation into Operation ForumTroll, an Advanced Persistent Threat (APT) campaign that exploited a zero-day vulnerability in Google Chrome. The research was presented at the Security Analyst Summit 2025, taking place in Thailand on October 26-29.

In March 2025, Kaspersky GReAT brought to light Operation ForumTroll, a sophisticated cyberespionage campaign exploiting a Chrome zero-day vulnerability, CVE-2025-2783. The APT group behind the attack sent personalized phishing emails disguised as invitations to the Primakov Readings forum, targeting Russian media outlets, educational institutions, and government organizations.

While investigating ForumTroll, researchers identified that the attackers used a spyware LeetAgent, which stood out due to its commands written in leetspeak, a rare feature in APT malware. Further analysis uncovered similarities between its toolset and a more advanced spyware that Kaspersky GReAT has observed in other attacks. After determining that, in some cases, the latter was launched by LeetAgent or that they shared a loader framework, researchers confirmed the connection between the two, as well as between the attacks.

Although the other spyware employed advanced anti-analysis techniques, including VMProtect obfuscation, Kaspersky retrieved the malware’s name from the code and identified it as Dante. The researchers discovered that a commercial spyware with the same name was promoted by Memento Labs, the rebranded successor to HackingTeam. Additionally, the most recent samples of HackingTeam’s Remote Control System spyware, obtained by Kaspersky GReAT, share similarities with Dante.

“While the existence of spyware vendors is well-known in the industry, their products remain elusive, particularly in targeted attacks where identification is exceptionally challenging. Uncovering Dante origin demanded peeling back layers of heavily obfuscated code, tracing a handful of rare fingerprints across years of malware evolution, and correlating them with a corporate lineage. Maybe it is the reason they called it Dante, there is a hell of a journey for anyone who would try to find its roots”, said Boris Larin, principal security researcher at Kaspersky GReAT.

The researchers traced the first use of LeetAgent back to 2022 and discovered additional attacks by ForumTroll APT targeting organizations and individuals in Russia and Belarus. The group stands out for its strong command of Russian and knowledge of local nuances, traits that Kaspersky observed in other campaigns linked to this APT threat. However, occasional errors suggest that the attackers were not native speakers.

The attack leveraging LeetAgent was first detected by Kaspersky Next XDR Expert. The full details of this research, as well as future updates on ForumTroll APT and Dante, are available to customers of the APT reporting service through Kaspersky Threat Intelligence Portal

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Tags: egyeconomyKaspersky

Related Posts

dubizzle Boosts Investor Trust During Periods of Uncertainty with the Launch of AI-Powered Property Valuation Tool “TruEstimate™”
Tech

dubizzle Boosts Investor Trust During Periods of Uncertainty with the Launch of AI-Powered Property Valuation Tool “TruEstimate™”

22 April، 2026
Ericsson unveils Differentiated Support: Modular, actionable intelligence
Tech

Ericsson unveils Differentiated Support: Modular, actionable intelligence

22 February، 2026
Ericsson and Mastercard enhance global digital money movement and accelerate digital financial inclusion
Tech

Ericsson and Mastercard enhance global digital money movement and accelerate digital financial inclusion

22 February، 2026
Microsoft and Ericsson bring enterprise-grade 5G laptop management to Windows 11
Tech

Microsoft and Ericsson bring enterprise-grade 5G laptop management to Windows 11

18 February، 2026
eNovate and Cobi Launch Large-Scale AI-Powered Digital Payment Infrastructure
Tech

eNovate and Cobi Launch Large-Scale AI-Powered Digital Payment Infrastructure

17 February، 2026
LG ELECTRONICS RELEASES FOURTH-QUARTER AND FULL-YEAR 2025 FINANCIAL RESULTS
Tech

LG ELECTRONICS RELEASES FOURTH-QUARTER AND FULL-YEAR 2025 FINANCIAL RESULTS

2 February، 2026
ADVERTISEMENT
No Result
View All Result

Recent Posts

  • dubizzle Boosts Investor Trust During Periods of Uncertainty with the Launch of AI-Powered Property Valuation Tool “TruEstimate™”
  • Madaar Developments launches “The Hillage” with EGP 15 billion investment, introducing
  • Uranium Prices Remain Stable Thanks to Strong Outlook
  • Hometown Developments appoints Eng. Tarek Bahaa as CEO to bolster regional and international capabilities*
  • vivo Launches the V70,  Bringing Advanced Portrait Imaging to Every Lifestyle
  • Dubai leasing market adjusts as rental listings increase and tenant demand shifts
  • …Magdi Yacoub Heart Foundation Collaborated with Ricrac to Continue Advancing Free Cardiac Health care Services 
  • Nakheel launches LIVYN project in a prime location on Suez Road in Shorouk city
  • Madinet Masr delivers a standout FY 2025 performance, fueled by record new sales, accelerated deliveries across its flagship developments,
  • Madinet Masr Distributes Treasury Stocks to Shareholders to Maximize Investment Returns as Part of the Largest Profit Distribution Project in its History for 2025 Earnings
  • Valu Delivers Strong FY2025 Results, with Gross Revenues Reaching a Record EGP 5.6 billion
  • Salam plans to deliver 9 projects in New Damietta city
  • Masria Group Teams Up with KAD on Isola Sheraton Project as First Phase Deliveries Begin
  • Mirage Developments starts implementing construction works on the iconic Hilton New Capital Downtown Hotel
  • Alameda Group Signs Strategic Partnership with Suez Canal Bank to Provide Exclusive Healthcare Services for High-Net-Worth Clients
  • Arkania Announces Accelerated Construction Plan for 2026
  • Rock Developments unveils Ramadan Tent at Rock Gold in partnership with Nagham Tent*
  • New Jersey Developments Announces Significant Construction Progress at Jamila North Coast, Reinforcing Its Credibility with Clients
  • EFG Hermes Brings Top-Performing Funds to Retail Investors, Launching Streamlined Access via EFG Hermes ONE App
  • MG Developments Launches VALO Hospitality, Investing EGP 2bn in Hospitality Sector Over Five Years

      Egy Economy

      © 2023 - إيجى إيكونومى.. بوابة إلكترونية متخصصة فى تغطية أخبار البيزنس والاقتصاد فى مصر والعالم العربى.

      روابط هامة

      • Egy Economy
      • Privacy Policy
      • Advertise
      • Contact Us

      تابعنا

      Welcome Back!

      Login to your account below

      Forgotten Password?

      Retrieve your password

      Please enter your username or email address to reset your password.

      Log In
      No Result
      View All Result
      • Egy Economy
      • Economy
        • Local
        • International
      • Stock Markets
        • Stock Exchange
        • Cash
      • Prices
      • Real Estate
      • Tech
      • Tourism
      • More
        • Opinions
        • Success Story
        • Variety
      • العربية

      © 2023 - إيجى إيكونومى.. بوابة إلكترونية متخصصة فى تغطية أخبار البيزنس والاقتصاد فى مصر والعالم العربى.

      -
      00:00
      00:00

      Queue

      Update Required Flash plugin
      -
      00:00
      00:00