Trusted Design

Dridex actors distributing the Shifu banking Trojan

概要

Following a month-long hiatus after a number of arrests, and despite a recent reported takedown, Dridex actors appear to have taken the recent disruptions as a challenge to bounce back better than ever. Proofpoint researchers analyzed the activity in the recent return to operations of the Dridex actors and identified numerous changes in behavior, from technical innovations to distributing other banking and data-stealing malware.

Created: 2026-02-23

Indicators

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

Kimsuky

Score: 8.71
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1657 - Financial Theft
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

Sea Turtle

Score: 3.03
Matched TTPs:
  • T1583 - Acquire Infrastructure
MITREへのリンク →

Ember Bear

Score: 6.88
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1195 - Supply Chain Compromise
MITREへのリンク →

Indrik Spider

Score: 3.03
Matched TTPs:
  • T1583 - Acquire Infrastructure
MITREへのリンク →

Agrius

Score: 3.03
Matched TTPs:
  • T1583 - Acquire Infrastructure
MITREへのリンク →

Contagious Interview

Score: 8.30
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1657 - Financial Theft
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

Sandworm Team

Score: 10.50
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1195 - Supply Chain Compromise
  • T1584.005 - Botnet
MITREへのリンク →

Star Blizzard

Score: 3.03
Matched TTPs:
  • T1583 - Acquire Infrastructure
MITREへのリンク →

OilRig

Score: 9.74
Matched TTPs:
  • T1195 - Supply Chain Compromise
  • T1588.003 - Code Signing Certificates
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

HAFNIUM

Score: 3.62
Matched TTPs:
  • T1584.005 - Botnet
MITREへのリンク →

Axiom

Score: 3.62
Matched TTPs:
  • T1584.005 - Botnet
MITREへのリンク →

Volt Typhoon

Score: 3.62
Matched TTPs:
  • T1584.005 - Botnet
MITREへのリンク →

Equation

Score: 4.13
Matched TTPs:
  • T1564.005 - Hidden File System
MITREへのリンク →

Strider

Score: 4.13
Matched TTPs:
  • T1564.005 - Hidden File System
MITREへのリンク →

Mustard Tempest

Score: 4.54
Matched TTPs:
  • T1608.006 - SEO Poisoning
MITREへのリンク →

Wizard Spider

Score: 5.90
Matched TTPs:
  • T1588.003 - Code Signing Certificates
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

BlackTech

Score: 3.15
Matched TTPs:
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

FIN8

Score: 5.90
Matched TTPs:
  • T1588.003 - Code Signing Certificates
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

Mustang Panda

Score: 10.03
Matched TTPs:
  • T1588.003 - Code Signing Certificates
  • T1027.007 - Dynamic API Resolution
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

Threat Group-3390

Score: 3.15
Matched TTPs:
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

Lazarus Group

Score: 6.88
Matched TTPs:
  • T1027.007 - Dynamic API Resolution
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

Sandworm Team

Score: 0.80
Matched TTPs:
  • T1584.005 - Botnet
  • T1583 - Acquire Infrastructure
  • T1195 - Supply Chain Compromise
MITREへのリンク →

Mustang Panda

Score: 0.75
Matched TTPs:
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
  • T1588.003 - Code Signing Certificates
  • T1027.007 - Dynamic API Resolution
MITREへのリンク →

OilRig

Score: 0.73
Matched TTPs:
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
  • T1588.003 - Code Signing Certificates
  • T1195 - Supply Chain Compromise
MITREへのリンク →

Kimsuky

Score: 0.66
Matched TTPs:
  • T1657 - Financial Theft
  • T1583 - Acquire Infrastructure
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

Contagious Interview

Score: 0.63
Matched TTPs:
  • T1657 - Financial Theft
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
  • T1583 - Acquire Infrastructure
MITREへのリンク →

Lazarus Group

Score: 0.56
Matched TTPs:
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
  • T1027.007 - Dynamic API Resolution
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る