Matthew Mesa

 @mesa_matt

  • Phish Scales: Malicious Actor Combines Personalized Email, Variety of Malware To Target Execs - 2016-04-05 - Proofpoint - Matthew Mesa TA530 Gozi ISFB TinyLoader Nymaim Dridex Smokebot RecoLoad
  • Microsoft Word Intruder 8 Adds Support for Flash Vulnerability CVE-2016-4117 - 2016-11-07 - Proofpoint - Matthew Mesa - Kafeine MWI CVE-2016-4117
  • Microsoft Word Intruder Integrates CVE-2017-0199, Utilized by Cobalt Group to Target Financial Institutions - 2017-06-01 - Proofpoint - Matthew Mesa - Axel F - Pierre T - Travis Green MWI CVE-2017-0199 Cobalt Group
  • Unraveling ThreadKit: New document exploit builder used to distribute The Trick, Formbook, Loki Bot and other malware - 2018-03-15 - Proofpoint - Axel F - Matthew Mesa ThreadKit CVE-2017-0199
  • It's called PsiX. It's a modular bot. - 2018-08-30 - Twitter - Matthew Mesa PsiXBot
  • TA505 begins summer campaigns with a new pet malware downloader, AndroMut, in the UAE, South Korea, Singapore, and the United States - 2019-07-02 - Proofpoint - Matthew Mesa - Dennis Schwarz - Proofpoint Staff AndroMut FlawedAmmyy TA505
  • TA505 Distributes New SDBbot Remote Access Trojan with Get2 Downloader - 2019-10-16 - Proofpoint - Dennis Schwarz - Kafeine - Matthew Mesa - Axel F - Proofpoint Staff Get2 TA505 SDBbot FlawedGrace FlawedAmmyy Snatch ServHelper