SentinelLabs Logo RGB WhitePurp
ABOUT
CONTACT
VISIT SENTINELONE.COM

Juan Andrés Guerrero-Saade

Juan Andrés is VP for Intelligence and Security Research and Senior Technical Fellow for AI Innovation, overseeing intelligence production and AI applications towards security problems. He's also Distinguished Resident Fellow for Threat Intelligence at the Johns Hopkins SAIS Alperovitch Institute. Before joining SentinelOne, JAGS led multiple threat intelligence teams at Google, Chronicle, was a Principal Security Researcher at GReAT focusing on targeted attacks, and served as Senior Cybersecurity and National Security Advisor to the Government of Ecuador. In 2023, JAGS was presented with a Presidential Volunteer Service Award for furthering U.S. cyber preparedness. His research work is the subject of two permanent exhibits at the International Spy Museum in Washington, DC. He founded the premier threat intelligence conference LABScon and is a co-host of the Three Buddy Problem podcast.
MeteorExpress Mysterious Wiper Paralyzes Iranian Trains With Epic Troll 7
labs
Adversary

MeteorExpress | Mysterious Wiper Paralyzes Iranian Trains with Epic Troll

Juan Andrés Guerrero-Saade / July 29, 2021

In the midst of an epic troll on a country-wide railway system, we discovered a new threat actor and their reusable wiper called Meteor.

Read More
ThunderCats Hack The FSB Your Taxes Didnt Pay For This Op 5
labs
Adversary

ThunderCats Hack the FSB | Your Taxes Didn’t Pay For This Op

Juan Andrés Guerrero-Saade / June 8, 2021

Early fingerpointing at Western governments for a hack against the Russian government was misplaced. Our taxes didn’t pay for this one.

Read More
NobleBaron New Poisoned Installers Could Be Used In Supply Chain Attacks 2
labs
Advanced Persistent Threat

NobleBaron | New Poisoned Installers Could Be Used In Supply Chain Attacks

Juan Andrés Guerrero-Saade / June 1, 2021

Nobelium – the new face of APT29 – deploys poisoned installers against Ukrainian government targets in a possible supply chain attack.

Read More
Previous
1 2
Next

SentinelLabs

In the era of interconnectivity, when markets, geographies, and jurisdictions merge in the melting pot of the digital domain, the perils of the threat ecosystem become unparalleled. Crimeware families achieve an unparalleled level of technical sophistication, APT groups are competing in fully-fledged cyber warfare, while once decentralized and scattered threat actors are forming adamant alliances of operating as elite corporate espionage teams.

Recent Posts

  • PCPJack | Cloud Worm Evicts TeamPCP and Steals Credentials at Scale
    PCPJack | Cloud Worm Evicts TeamPCP and Steals Credentials at Scale
    May 7, 2026
  • LABScon25 Replay | Please Connect to the Foreign Entity to Enhance Your User Experience
    LABScon25 Replay | Please Connect to the Foreign Entity to Enhance Your User Experience
    May 6, 2026
  • fast16 | Mystery Shadow Brokers Reference Reveals High-Precision Software Sabotage 5 Years Before Stuxnet
    fast16 | Mystery Shadow Brokers Reference Reveals High-Precision Software Sabotage 5 Years Before Stuxnet
    April 23, 2026

Sign Up

Get notified when we post new content.

Thanks! Keep an eye out for new content!

  • Twitter
  • LinkedIn
©2026 SentinelOne, All Rights Reserved.