HomeIntelligenceBrief
BREACH BRIEF🟠 High ThreatIntel

ESET Highlights 5 High‑Impact Malware Families Discovered in 2019

ESET’s Antimalware Day 2019 report lists five malware families—Machete, Filecoder.C, FakeApp.KP, Varenyky, and KRACK‑vulnerable devices—showing how spear‑phishing, ransomware, credential theft, sextortion, and lingering Wi‑Fi flaws continue to threaten organizations. The spread underscores the need for continuous security‑awareness training and verifiable control evidence for audit readiness.

LiveThreat™ Intelligence · 📅 September 10, 2026· 📰 eset.com
🟠
Severity
High
TI
Type
ThreatIntel
🎯
Confidence
High
🏢
Affected
3 sector(s)
Actions
3 recommended
📰
Source
eset.com

ESET Highlights 5 High‑Impact Malware Families Discovered in 2019

What Happened — ESET’s Antimalware Day 2019 report catalogued five malware families that surfaced in 2019:

* Machete – a spear‑phishing espionage tool targeting government agencies in Latin America;

* Android/Filecoder.C – ransomware encrypting mobile files and extorting victims;

* Android/FakeApp.KP – a credential‑stealing app that bypassed Google’s SMS‑2FA restrictions;

* Varenyky – a sextortion campaign using macro‑enabled documents to capture screenshots;

* KRACK‑vulnerable Wi‑Fi implementations in Amazon Echo and Kindle devices, still exploitable two years after disclosure.

Why It Matters for Trust & Control Assurance

  • These campaigns illustrate the exact scenarios a continuous security‑awareness program is built to detect, train against, and document as evidence of due diligence.
  • Persistent vulnerabilities (e.g., KRACK) underscore the need for systematic patch‑management controls and verifiable remediation records.
  • Credential‑theft techniques that sidestep SMS‑2FA highlight the importance of layered authentication policies and regular control testing.

Who Is Affected – Government ministries, law‑enforcement and education bodies; financial‑services platforms (cryptocurrency exchanges); mobile‑device users; any organization deploying Wi‑Fi‑enabled IoT devices.

Recommended Actions

  • Map phishing‑resistance, credential‑management, and patch‑management controls to your audit framework and collect evidence of training completion and remediation.
  • Deploy endpoint detection and response (EDR) solutions that can surface the listed malware behaviors.
  • Conduct periodic phishing simulations and security‑awareness refreshers, especially around macro‑based documents and SMS‑2FA bypass techniques.

Source: ESET Antimalware Day 2019 Press Release

Technical Notes

  • Machete – spear‑phishing attachment; capabilities: screenshot, keylogging, clipboard access, file encryption, geolocation.
  • Android/Filecoder.C – ransomware encrypts files, sends ransom demand in Bitcoin; distribution via forums.
  • Android/FakeApp.KP – reads on‑screen notifications to harvest one‑time passwords, bypassing Google’s SMS‑2FA hardening.
  • Varenyky – macro‑enabled Office document; records screen to obtain compromising images for extortion.
  • KRACK – Wi‑Fi key reinstallation attack; enables DoS, traffic interception, credential capture on vulnerable Echo/Kindle devices.

Source: same as above

📰 Original Source
https://www.eset.com/int/about/newsroom/press-releases/announcements/eset-marks-antimalware-day-2019-with-a-top-5-list-of-malware-discovered-in-2019/

This LiveThreat Intelligence Brief is an independent analysis. Read the original reporting at the link above.

From the Verisq platform · Security Awareness

Phishing and social engineering are a people-and-policy problem.

The Verisq AI Trust Operations platform pairs Security Awareness Training with policy adoption tracking, so human-risk controls are documented and audit-ready.

Explore the Verisq AI Trust Operations platform →