Threat Detection Webinar | July 2025

In this “Spotlight on Fingerprinting, Tofsee Configs & RansomHub-Linked Loaders” webinar, we walked through:

  • Improved VTIs to detect registry queries, domain joins, and stealthy OS fingerprinting via LOLBins like systeminfo.
  • New config extractors for Tofsee and SocGholish/FakeUpdates, often linked to RansomHub.
  • New YARA rules for stealers, loaders, and RATs seen in campaigns like SalatStealer, ModiLoader, and DarkVision RAT.

Covered in The Webinar

Detect stealthy OS fingerprinting with new VTIs

Unpack Tofsee & SocGholish configs tied to RansomHub

Use new YARA rules for stealers, loaders & RATs

About The Speakers

Ertugrul Kara

Senior PMM

Ertugrul Kara is the Senior Product Marketing Manager for VMRay. With a career spanning over 10 years in cybersecurity, he has seen the advancement of security products from open-source firewalls to automation-powered threat detection technologies following the evolution of the threat landscape. He is currently focused on leading the marketing efforts for VMRay’s security automation solutions while enhancing the alignment between the products and enterprise customer needs. Previously, he has held various roles in early-stage security startups, led product launches and growth strategies, and ran his startup specialized in network security. Ertugrul attended the Middle East Technical University for undergraduate studies where he earned his bachelor’s degree in Aerospace Engineering.

Serge Haumont

Senior Product Manager

Serge Haumont is a seasoned Senior Product Manager at VMRay with a deep background in cybersecurity and product innovation. With previous leadership roles at WithSecure, F-Secure, Inside Secure, and Nokia, Serge brings decades of experience bridging technical expertise with customer-focused product strategy. Formerly a chief engineer and recognized as Nokia’s #4 inventor by patents granted between 2000 and 2009, he thrives on solving real-world problems by collaborating across R&D, sales, and marketing. At VMRay, Serge is passionate about discovering market needs and driving solutions that empower users and elevate security operations.

Explore Valuable Cybersecurity Resources

Proudly Presenting: UniqueSignal
VMRays New Threat Intelligence feed -
Actionable Malware Intelligence, Without The Noise

60 Days Free Trial – Available for a limited time

New EDR Integration: VMRay now integrates with Microsoft Defender for Endpoint — enhance threat detection with streamlined analysis!