AcronisAcronisAcronisAcronisAcronisAcronisAcronisAcronisAcronisAcronisAcronis
Acronis
Ilia Dafchev

Ilia Dafchev

Senior TRU Researcher, Acronis Threat Research Unit (TRU)

Ilia has over seven years of experience in the cybersecurity industry. At Acronis, he is focused on threat research, malware analysis, and detection engineering. Previously, he worked as a Senior Security Analyst, where he specialized in incident response, forensic investigations, but also participated in penetration testing.

Ilia's articles

January 15, 2026

LOTUSLITE: Targeted espionage leveraging geopolitical themes

Acronis Threat Research Unit (TRU) observed a targeted malware campaign against U.S. government entities leveraging a politically themed ZIP archive containing a loader executable and a malicious DLL. The executable is used to sideload and execute the DLL, which functions as the primary backdoor, tracked as LOTUSLITE.

January 15, 2026

LOTUSLITE: Targeted espionage leveraging geopolitical themes

Acronis Threat Research Unit (TRU) observed a targeted malware campaign against U.S. government entities leveraging a politically themed ZIP archive containing a loader executable and a malicious DLL. The executable is used to sideload and execute the DLL, which functions as the primary backdoor, tracked as LOTUSLITE.