SentinelLabs Logo RGB WhitePurp
ABOUT
CONTACT
VISIT SENTINELONE.COM

Jim Walter

Jim Walter is a Senior Threat Researcher at SentinelOne focusing on evolving trends, actors, and tactics within the thriving ecosystem of cybercrime and crimeware. He specializes in the discovery and analysis of emerging cybercrime "services" and evolving communication channels leveraged by mid-level criminal organizations. Jim joined SentinelOne following ~4 years at a security start-up, also focused on malware research and organized crime. Previously, he spent over 17 years at McAfee/Intel running their Threat Intelligence and Advanced Threat Research teams.
CatB Ransomware File Locker Sharpens Its Claws To Steal Data With MSDTC Service DLL Hijacking 3
labs

CatB Ransomware | File Locker Sharpens Its Claws to Steal Data with MSDTC Service DLL Hijacking

Jim Walter / March 13, 2023

CatB ransomware abuses MSDTC service for DLL hijacking and takes a swipe at victim's mail and browser data.

Read More
OPSEC Failure Reveals Hand Of GlobeImposter Behind South Korean TZW Ransomware Campaign 4
labs

Recent TZW Campaigns Revealed As Part of GlobeImposter Malware Family

Jim Walter / February 15, 2023

Evidence of shared infrastructure and close file similarities link new TZW ransomware to a rebrand of GlobeImposter.

Read More
Gotta Catch Em All Understanding The NetSupport RAT Campaigns Hiding Behind Pokemon Lures 1
labs

Gotta Catch ‘Em All | Understanding the NetSupport RAT Campaigns Hiding Behind Pokemon Lures

Jim Walter / January 16, 2023

Threat actors continue to find creative ways to infect users with NetSupport RAT. Learn how to identify and prevent this remote access trojan.

Read More
Venus Ransomware Zeoticus Spin Off Shows Sophistication Isnt Necessary For Success 5
labs

Venus Ransomware | Zeoticus Spin-off Shows Sophistication Isn’t Necessary for Success

Jim Walter / November 16, 2022

Learn about the uptick in activity of this recent ransomware variant that has been encrypting victims worldwide, with the latest IoCS, TTPs and analysis.

Read More
Slam Anatomy Of A Publicly Available Ransomware Builder 1
labs

From the Front Lines | Slam! Anatomy of a Publicly-Available Ransomware Builder

Jim Walter / September 15, 2022

The barrier to entry into the world of ransomware and cybercrime has never been lower, and even low-level threats can be surprisingly effective.

Read More
BlueSky Ransomware AD Lateral Movement Evasion And Fast Encryption Puts Threat On The Radar 1
labs

BlueSky Ransomware | AD Lateral Movement, Evasion and Fast Encryption Put Threat on the Radar

Jim Walter / August 25, 2022

This new ransomware threat uses multi-threaded encryption and exploits known Windows vulnerabilities to infect hosts across Active Directory.

Read More
More Evil Markets How Its Never Been Easier To Buy Initial Access To Compromised Networks By Jim Walter 6
labs

What Are Initial Access Brokers? – A Comprehensive Guide 101

Jim Walter / August 17, 2022

Take a sneak peek into the world of criminal markets, how they look on the inside, and how traders advertise and sell unauthorized access to organizations.

Read More
LockBit 3.0 Update Unpicking The Ransomwares Latest Anti Analysis And Evasion Techniques 5
labs
Crimeware

LockBit 3.0 Update | Unpicking the Ransomware’s Latest Anti-Analysis and Evasion Techniques

Jim Walter / July 21, 2022

The self-proclaimed 'oldest ransomware affiliate on the planet' has new tricks and new features and continues to beat enterprise defenses.

Read More
From The Front Lines 3 New And Emerging Ransomware Threats Striking Businesses In 2022 2
labs

From the Front Lines | 3 New and Emerging Ransomware Threats Striking Businesses in 2022

Jim Walter / June 22, 2022

Crimeware continues to evolve at pace with threat actors both iterating on old source code and creating new ransomware families. Stay informed, stay safe.

Read More
New GBU Weekly
labs

The Good, the Bad and the Ugly in Cybersecurity – Week 5

Jim Walter / February 4, 2022

CanadaHQ darknet market operators get heavy fines, FBI warns companies of job posting scams, and Conti ransomware disrupts UK snack market.

Read More
Previous
1 2 3 4 5 6 … 12
Next

SentinelLabs

In the era of interconnectivity, when markets, geographies, and jurisdictions merge in the melting pot of the digital domain, the perils of the threat ecosystem become unparalleled. Crimeware families achieve an unparalleled level of technical sophistication, APT groups are competing in fully-fledged cyber warfare, while once decentralized and scattered threat actors are forming adamant alliances of operating as elite corporate espionage teams.

Recent Posts

  • Silent Brothers | Ollama Hosts Form Anonymous AI Network Beyond Platform Guardrails
    Silent Brothers | Ollama Hosts Form Anonymous AI Network Beyond Platform Guardrails
    January 29, 2026
  • LABScon25 Replay | How to Bug Hotel Rooms v2.0
    LABScon25 Replay | How to Bug Hotel Rooms v2.0
    January 21, 2026
  • LLMs in the SOC (Part 1) | Why Benchmarks Fail Security Operations Teams
    LLMs in the SOC (Part 1) | Why Benchmarks Fail Security Operations Teams
    January 20, 2026

Sign Up

Get notified when we post new content.

Thanks! Keep an eye out for new content!

  • Twitter
  • LinkedIn
©2026 SentinelOne, All Rights Reserved.