SentinelLabs Logo RGB WhitePurp
ABOUT
CONTACT
VISIT SENTINELONE.COM

Jim Walter

Jim Walter is a Senior Threat Researcher at SentinelOne focusing on evolving trends, actors, and tactics within the thriving ecosystem of cybercrime and crimeware. He specializes in the discovery and analysis of emerging cybercrime "services" and evolving communication channels leveraged by mid-level criminal organizations. Jim joined SentinelOne following ~4 years at a security start-up, also focused on malware research and organized crime. Previously, he spent over 17 years at McAfee/Intel running their Threat Intelligence and Advanced Threat Research teams.
The BLINDINGCAN RAT And Malicious North Korean Activity 6
labs

The BLINDINGCAN RAT and Malicious North Korean Activity

Jim Walter / August 31, 2020

North Korean-backed threat groups continue to adapt and evolve; their latest campaign aims to gather intel from key defense and government contractors.

Read More
Blog Weekly Weekly
labs

The Good, the Bad and the Ugly in Cybersecurity – Week 34

Jim Walter / August 21, 2020

Cyber cops take down gang laundering $42m, Lazarus RAT targets defense/energy industries and ransomware goes offshore in attack on cruise liner operator.

Read More
Case Study  Catching A Human Operated Maze Ransomware Attack In Action 1
labs
Adversary

Case Study: Catching a Human-Operated Maze Ransomware Attack In Action

Jim Walter / August 13, 2020

Maze operators tailor attacks to the victim’s environment to evade detection. We show how they operate, and reveal a decoded HDA payload among other IOCs.

Read More
Agent Tesla   Old RAT Uses New Tricks To Stay On Top 4
labs
Crimeware

Agent Tesla | Old RAT Uses New Tricks to Stay on Top

Jim Walter / August 10, 2020

Aside from Dridex, Agent Tesla is the most widely used malware currently targeting businesses. We review its core functionality and latest adaptations.

Read More
Blog Weekly Weekly
labs

The Good, the Bad and the Ugly in Cybersecurity – Week 30

Jim Walter / July 24, 2020

FBI indicts two Chinese hackers, researchers uncover North Korean APT toolset and the ransomware rampage continues with hits on Argentinian ISP.

Read More
WastedLocker Ransomware   Abusing ADS And NTFS File Attributes 4
labs
Crimeware

WastedLocker Ransomware: Abusing ADS and NTFS File Attributes

Jim Walter / July 23, 2020

WastedLocker is a relatively new ransomware that has been attacking high-value targets across numerous industries, including several Fortune 500 companies.

Read More
Blog Weekly Weekly
labs

The Good, the Bad and the Ugly in Cybersecurity – Week 27

Jim Walter / July 3, 2020

Notorious carder gets 9-year sentence, macOS targeted by new info-stealing ransomware, and a critical vuln exposes networks to a SAML authentication bypass.

Read More
Thanos Ransomware   A Rapidly Evolving RaaS Targets Legacy AV Backup Solutions 12
labs
Crimeware

Thanos Ransomware | RIPlace, Bootlocker and More Added to Feature Set

Jim Walter / July 1, 2020

Thanos Ransomware has developed rapidly over the last 6 months, offering a customized RaaS tool with an expanding feature set to build unique payloads.

Read More
Blog Weekly Weekly
labs

The Good, the Bad and the Ugly in Cybersecurity – Week 25

Jim Walter / June 19, 2020

Cyber criminal receives maximum sentence for DDoS attacks, multiple vulns found in widely-used TCP/IP stack and Thanos ransomware evades AV with RIPlace.

Read More
Blog Weekly Weekly
labs

The Good, the Bad and the Ugly in Cybersecurity – Week 23

Jim Walter / June 5, 2020

CISA launch first of six essential security tips for leaders, researchers reveal critical flaw in VMWare, and DoppelPaymer claim theft of NASA, SpaceX data.

Read More
Previous
1 … 7 8 9 10 11 12
Next

SentinelLabs

In the era of interconnectivity, when markets, geographies, and jurisdictions merge in the melting pot of the digital domain, the perils of the threat ecosystem become unparalleled. Crimeware families achieve an unparalleled level of technical sophistication, APT groups are competing in fully-fledged cyber warfare, while once decentralized and scattered threat actors are forming adamant alliances of operating as elite corporate espionage teams.

Recent Posts

  • PCPJack | Cloud Worm Evicts TeamPCP and Steals Credentials at Scale
    PCPJack | Cloud Worm Evicts TeamPCP and Steals Credentials at Scale
    May 7, 2026
  • LABScon25 Replay | Please Connect to the Foreign Entity to Enhance Your User Experience
    LABScon25 Replay | Please Connect to the Foreign Entity to Enhance Your User Experience
    May 6, 2026
  • fast16 | Mystery Shadow Brokers Reference Reveals High-Precision Software Sabotage 5 Years Before Stuxnet
    fast16 | Mystery Shadow Brokers Reference Reveals High-Precision Software Sabotage 5 Years Before Stuxnet
    April 23, 2026

Sign Up

Get notified when we post new content.

Thanks! Keep an eye out for new content!

  • Twitter
  • LinkedIn
©2026 SentinelOne, All Rights Reserved.