Trusted Design

DRIDEX Spam Runs Resurface Against US Targets

概要

DRIDEX is steadily regaining its footing in the US just over a month after its takedown orchestrated by US and UK law enforcement agencies. Taking down servers is a significant step in crippling botnets, but unless all infrastructure are destroyed and all threat actors are caught, threats like DRIDEX are bound to resurface. As such, it is the responsibility of security researchers to continually monitor threats after takedowns and collaborate to eventually destroy them. Trend Micro prioritizes supporting arrests over takedowns where possible for exactly this reason, as seen in our recent joint arrest with NCA in the UK. Source : Tren Micro

Created: 2026-02-23

Indicators

Indicatorsは見つかっていない。

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

Ember Bear

Score: 6.72
Matched TTPs:
  • T1564.008 - Email Hiding Rules
  • T1550 - Use Alternate Authentication Material
MITREへのリンク →

Sandworm Team

Score: 12.56
Matched TTPs:
  • T1564.008 - Email Hiding Rules
  • T1091 - Replication Through Removable Media
  • T1049 - System Network Connections Discovery
  • T1546.016 - Installer Packages
MITREへのリンク →

Earth Lusca

Score: 4.81
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1546.016 - Installer Packages
MITREへのリンク →

Mustang Panda

Score: 4.90
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1565.002 - Transmitted Data Manipulation
MITREへのリンク →

LuminousMoth

Score: 4.57
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1550 - Use Alternate Authentication Material
MITREへのリンク →

Kimsuky

Score: 8.19
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1565.002 - Transmitted Data Manipulation
  • T1008 - Fallback Channels
MITREへのリンク →

Mustard Tempest

Score: 6.51
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1543.002 - Systemd Service
MITREへのリンク →

OilRig

Score: 4.50
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1547.008 - LSASS Driver
MITREへのリンク →

BlackByte

Score: 4.57
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1550 - Use Alternate Authentication Material
MITREへのリンク →

APT32

Score: 4.57
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1550 - Use Alternate Authentication Material
MITREへのリンク →

Moonstone Sleet

Score: 4.50
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1547.008 - LSASS Driver
MITREへのリンク →

Contagious Interview

Score: 11.56
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1021.006 - Windows Remote Management
  • T1565.002 - Transmitted Data Manipulation
  • T1547.008 - LSASS Driver
MITREへのリンク →

FIN7

Score: 4.57
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1578.001 - Create Snapshot
MITREへのリンク →

EXOTIC LILY

Score: 4.50
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1547.008 - LSASS Driver
MITREへのリンク →

Dragonfly

Score: 5.43
Matched TTPs:
  • T1550 - Use Alternate Authentication Material
  • T1546.016 - Installer Packages
MITREへのリンク →

Patchwork

Score: 5.88
Matched TTPs:
  • T1550 - Use Alternate Authentication Material
  • T1008 - Fallback Channels
MITREへのリンク →

Axiom

Score: 6.21
Matched TTPs:
  • T1550 - Use Alternate Authentication Material
  • T1049 - System Network Connections Discovery
MITREへのリンク →

Lazarus Group

Score: 10.54
Matched TTPs:
  • T1550 - Use Alternate Authentication Material
  • T1546.016 - Installer Packages
  • T1578.001 - Create Snapshot
  • T1547.008 - LSASS Driver
MITREへのリンク →

APT28

Score: 6.72
Matched TTPs:
  • T1550 - Use Alternate Authentication Material
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

FIN6

Score: 5.12
Matched TTPs:
  • T1550 - Use Alternate Authentication Material
  • T1547.008 - LSASS Driver
MITREへのリンク →

Leviathan

Score: 5.43
Matched TTPs:
  • T1550 - Use Alternate Authentication Material
  • T1546.016 - Installer Packages
MITREへのリンク →

UNC3886

Score: 6.72
Matched TTPs:
  • T1021.006 - Windows Remote Management
  • T1578.001 - Create Snapshot
MITREへのリンク →

HAFNIUM

Score: 3.62
Matched TTPs:
  • T1049 - System Network Connections Discovery
MITREへのリンク →

Volt Typhoon

Score: 9.05
Matched TTPs:
  • T1049 - System Network Connections Discovery
  • T1546.016 - Installer Packages
  • T1578.001 - Create Snapshot
MITREへのリンク →

Storm-1811

Score: 9.99
Matched TTPs:
  • T1567.003 - Exfiltration to Text Storage Sites
  • T1565.002 - Transmitted Data Manipulation
  • T1547.008 - LSASS Driver
MITREへのリンク →

RTM

Score: 6.21
Matched TTPs:
  • T1565.002 - Transmitted Data Manipulation
  • T1008 - Fallback Channels
MITREへのリンク →

Scattered Spider

Score: 7.47
Matched TTPs:
  • T1565.002 - Transmitted Data Manipulation
  • T1027.002 - Software Packing
MITREへのリンク →

Turla

Score: 5.43
Matched TTPs:
  • T1546.016 - Installer Packages
  • T1578.001 - Create Snapshot
MITREへのリンク →

BRONZE BUTLER

Score: 5.88
Matched TTPs:
  • T1578.001 - Create Snapshot
  • T1008 - Fallback Channels
MITREへのリンク →

CURIUM

Score: 5.12
Matched TTPs:
  • T1578.001 - Create Snapshot
  • T1547.008 - LSASS Driver
MITREへのリンク →

Rocke

Score: 3.29
Matched TTPs:
  • T1008 - Fallback Channels
MITREへのリンク →

APT41

Score: 3.29
Matched TTPs:
  • T1008 - Fallback Channels
MITREへのリンク →

Velvet Ant

Score: 4.13
Matched TTPs:
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

Sandworm Team

Score: 0.84
Matched TTPs:
  • T1546.016 - Installer Packages
  • T1049 - System Network Connections Discovery
  • T1091 - Replication Through Removable Media
  • T1564.008 - Email Hiding Rules
MITREへのリンク →

Contagious Interview

Score: 0.74
Matched TTPs:
  • T1021.006 - Windows Remote Management
  • T1547.008 - LSASS Driver
  • T1565.002 - Transmitted Data Manipulation
  • T1091 - Replication Through Removable Media
MITREへのリンク →

Storm-1811

Score: 0.72
Matched TTPs:
  • T1565.002 - Transmitted Data Manipulation
  • T1547.008 - LSASS Driver
  • T1567.003 - Exfiltration to Text Storage Sites
MITREへのリンク →

Lazarus Group

Score: 0.71
Matched TTPs:
  • T1546.016 - Installer Packages
  • T1547.008 - LSASS Driver
  • T1550 - Use Alternate Authentication Material
  • T1578.001 - Create Snapshot
MITREへのリンク →

Volt Typhoon

Score: 0.61
Matched TTPs:
  • T1546.016 - Installer Packages
  • T1578.001 - Create Snapshot
  • T1049 - System Network Connections Discovery
MITREへのリンク →

Kimsuky

Score: 0.58
Matched TTPs:
  • T1565.002 - Transmitted Data Manipulation
  • T1008 - Fallback Channels
  • T1091 - Replication Through Removable Media
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る