Dridex actors distributing the Shifu banking Trojan
概要
Following a month-long hiatus after a number of arrests, and despite a recent reported takedown, Dridex actors appear to have taken the recent disruptions as a challenge to bounce back better than ever. Proofpoint researchers analyzed the activity in the recent return to operations of the Dridex actors and identified numerous changes in behavior, from technical innovations to distributing other banking and data-stealing malware.
Created: 2026-02-23
Indicators
類似Pulses
このPulseに関連する脅威アクター (事実ベース)
Score: 8.71
Matched TTPs:
- T1583 - Acquire Infrastructure
- T1657 - Financial Theft
- T1588.003 - Code Signing Certificates
MITREへのリンク →
Score: 3.03
Matched TTPs:
- T1583 - Acquire Infrastructure
MITREへのリンク →
Score: 6.88
Matched TTPs:
- T1583 - Acquire Infrastructure
- T1195 - Supply Chain Compromise
MITREへのリンク →
Score: 3.03
Matched TTPs:
- T1583 - Acquire Infrastructure
MITREへのリンク →
Score: 3.03
Matched TTPs:
- T1583 - Acquire Infrastructure
MITREへのリンク →
Score: 8.30
Matched TTPs:
- T1583 - Acquire Infrastructure
- T1657 - Financial Theft
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →
Score: 10.50
Matched TTPs:
- T1583 - Acquire Infrastructure
- T1195 - Supply Chain Compromise
- T1584.005 - Botnet
MITREへのリンク →
Score: 3.03
Matched TTPs:
- T1583 - Acquire Infrastructure
MITREへのリンク →
Score: 9.74
Matched TTPs:
- T1195 - Supply Chain Compromise
- T1588.003 - Code Signing Certificates
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1564.005 - Hidden File System
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1564.005 - Hidden File System
MITREへのリンク →
Score: 4.54
Matched TTPs:
- T1608.006 - SEO Poisoning
MITREへのリンク →
Score: 5.90
Matched TTPs:
- T1588.003 - Code Signing Certificates
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1588.003 - Code Signing Certificates
MITREへのリンク →
Score: 5.90
Matched TTPs:
- T1588.003 - Code Signing Certificates
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →
Score: 10.03
Matched TTPs:
- T1588.003 - Code Signing Certificates
- T1027.007 - Dynamic API Resolution
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1588.003 - Code Signing Certificates
MITREへのリンク →
Score: 6.88
Matched TTPs:
- T1027.007 - Dynamic API Resolution
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →
このPulseに関連する脅威アクター (推論ベース)
Score: 0.80
Matched TTPs:
- T1584.005 - Botnet
- T1583 - Acquire Infrastructure
- T1195 - Supply Chain Compromise
MITREへのリンク →
Score: 0.75
Matched TTPs:
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
- T1588.003 - Code Signing Certificates
- T1027.007 - Dynamic API Resolution
MITREへのリンク →
Score: 0.73
Matched TTPs:
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
- T1588.003 - Code Signing Certificates
- T1195 - Supply Chain Compromise
MITREへのリンク →
Score: 0.66
Matched TTPs:
- T1657 - Financial Theft
- T1583 - Acquire Infrastructure
- T1588.003 - Code Signing Certificates
MITREへのリンク →
Score: 0.63
Matched TTPs:
- T1657 - Financial Theft
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
- T1583 - Acquire Infrastructure
MITREへのリンク →
Score: 0.56
Matched TTPs:
- T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
- T1027.007 - Dynamic API Resolution
MITREへのリンク →
Related CVEs
このPulseに見つかったCVEはありません。
Pulse – 脅威アクター グラフ
← Pulse一覧に戻る