Trusted Design

BlackEnergy by the SSHBearDoor

概要

The cybercriminal group behind BlackEnergy, the malware family that has been around since 2007 and has made a comeback in 2014 (see our previous blog posts on Back in BlackEnergy *: 2014 Targeted Attacks in Ukraine and Poland and BlackEnergy PowerPoint Campaigns, as well as our Virus Bulletin talk on the subject), was also active in the year 2015. ESET has recently discovered that the BlackEnergy trojan was recently used as a backdoor to deliver a destructive KillDisk component in attacks against Ukrainian news media companies and against the electrical power industry. In this blog, we provide details on the BlackEnergy samples ESET has detected in 2015, as well as the KillDisk components used in the attacks. Furthermore, we examine a previously unknown SSH backdoor that was also used as another channel of accessing the infected systems, in addition to BlackEnergy.

Created: 2026-02-23

Indicators

Indicatorsは見つかっていない。

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

Ember Bear

Score: 10.94
Matched TTPs:
  • T1491.002 - External Defacement
  • T1195 - Supply Chain Compromise
  • T1190 - Exploit Public-Facing Application
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Sandworm Team

Score: 24.91
Matched TTPs:
  • T1491.002 - External Defacement
  • T1587.001 - Malware
  • T1608.001 - Upload Malware
  • T1195 - Supply Chain Compromise
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
  • T1003.003 - NTDS
MITREへのリンク →

Winnti Group

Score: 3.29
Matched TTPs:
  • T1014 - Rootkit
MITREへのリンク →

APT41

Score: 12.72
Matched TTPs:
  • T1014 - Rootkit
  • T1069 - Permission Groups Discovery
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1003.003 - NTDS
MITREへのリンク →

Rocke

Score: 4.76
Matched TTPs:
  • T1014 - Rootkit
  • T1190 - Exploit Public-Facing Application
MITREへのリンク →

TeamTNT

Score: 9.88
Matched TTPs:
  • T1014 - Rootkit
  • T1587.001 - Malware
  • T1007 - System Service Discovery
  • T1608.001 - Upload Malware
MITREへのリンク →

APT28

Score: 33.20
Matched TTPs:
  • T1014 - Rootkit
  • T1025 - Data from Removable Media
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1546.015 - Component Object Model Hijacking
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
  • T1498 - Network Denial of Service
  • T1003.003 - NTDS
  • T1669 - Wi-Fi Networks
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

UNC3886

Score: 15.63
Matched TTPs:
  • T1014 - Rootkit
  • T1587.001 - Malware
  • T1190 - Exploit Public-Facing Application
  • T1681 - Search Threat Vendor Data
  • T1027.005 - Indicator Removal from Tools
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Scattered Spider

Score: 17.85
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1657 - Financial Theft
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1538 - Cloud Service Dashboard
  • T1003.003 - NTDS
MITREへのリンク →

TA505

Score: 6.11
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1608.001 - Upload Malware
  • T1588.002 - Tool
MITREへのリンク →

Volt Typhoon

Score: 10.47
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1007 - System Service Discovery
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1003.003 - NTDS
MITREへのリンク →

APT3

Score: 9.90
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1041 - Exfiltration Over C2 Channel
  • T1027.005 - Indicator Removal from Tools
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

FIN13

Score: 12.56
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1587.001 - Malware
  • T1190 - Exploit Public-Facing Application
  • T1657 - Financial Theft
  • T1588.002 - Tool
  • T1003.003 - NTDS
MITREへのリンク →

OilRig

Score: 24.82
Matched TTPs:
  • T1025 - Data from Removable Media
  • T1587.001 - Malware
  • T1007 - System Service Discovery
  • T1608.001 - Upload Malware
  • T1195 - Supply Chain Compromise
  • T1588.002 - Tool
  • T1027.005 - Indicator Removal from Tools
  • T1203 - Exploitation for Client Execution
  • T1573.002 - Asymmetric Cryptography
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Gamaredon Group

Score: 19.49
Matched TTPs:
  • T1025 - Data from Removable Media
  • T1608.001 - Upload Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1001 - Data Obfuscation
  • T1102.002 - Bidirectional Communication
  • T1561.001 - Disk Content Wipe
MITREへのリンク →

Turla

Score: 14.64
Matched TTPs:
  • T1025 - Data from Removable Media
  • T1587.001 - Malware
  • T1007 - System Service Discovery
  • T1588.002 - Tool
  • T1027.005 - Indicator Removal from Tools
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

Kimsuky

Score: 20.89
Matched TTPs:
  • T1587.001 - Malware
  • T1007 - System Service Discovery
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1657 - Financial Theft
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1218.010 - Regsvr32
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

Moonstone Sleet

Score: 8.93
Matched TTPs:
  • T1587.001 - Malware
  • T1608.001 - Upload Malware
  • T1585.001 - Social Media Accounts
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Indrik Spider

Score: 4.62
Matched TTPs:
  • T1587.001 - Malware
  • T1007 - System Service Discovery
MITREへのリンク →

Lazarus Group

Score: 25.56
Matched TTPs:
  • T1587.001 - Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
  • T1027.007 - Dynamic API Resolution
  • T1566.003 - Spearphishing via Service
  • T1561.001 - Disk Content Wipe
  • T1529 - System Shutdown/Reboot
MITREへのリンク →

Contagious Interview

Score: 18.41
Matched TTPs:
  • T1587.001 - Malware
  • T1608.001 - Upload Malware
  • T1681 - Search Threat Vendor Data
  • T1657 - Financial Theft
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

LuminousMoth

Score: 6.89
Matched TTPs:
  • T1587.001 - Malware
  • T1608.001 - Upload Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
MITREへのリンク →

Salt Typhoon

Score: 4.41
Matched TTPs:
  • T1587.001 - Malware
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
MITREへのリンク →

APT29

Score: 8.43
Matched TTPs:
  • T1587.001 - Malware
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Play

Score: 6.94
Matched TTPs:
  • T1587.001 - Malware
  • T1190 - Exploit Public-Facing Application
  • T1657 - Financial Theft
  • T1588.002 - Tool
MITREへのリンク →

Aoqin Dragon

Score: 4.44
Matched TTPs:
  • T1587.001 - Malware
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

RedCurl

Score: 4.84
Matched TTPs:
  • T1587.001 - Malware
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

Cleaver

Score: 5.29
Matched TTPs:
  • T1587.001 - Malware
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
MITREへのリンク →

Moses Staff

Score: 4.41
Matched TTPs:
  • T1587.001 - Malware
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
MITREへのリンク →

Ke3chang

Score: 11.25
Matched TTPs:
  • T1587.001 - Malware
  • T1007 - System Service Discovery
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1003.003 - NTDS
MITREへのリンク →

Mustang Panda

Score: 14.86
Matched TTPs:
  • T1587.001 - Malware
  • T1608.001 - Upload Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1027.007 - Dynamic API Resolution
  • T1003.003 - NTDS
MITREへのリンク →

FIN7

Score: 13.32
Matched TTPs:
  • T1587.001 - Malware
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1674 - Input Injection
  • T1588.002 - Tool
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

BRONZE BUTLER

Score: 4.87
Matched TTPs:
  • T1007 - System Service Discovery
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Aquatic Panda

Score: 3.37
Matched TTPs:
  • T1007 - System Service Discovery
  • T1588.002 - Tool
MITREへのリンク →

Chimera

Score: 7.69
Matched TTPs:
  • T1007 - System Service Discovery
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1003.003 - NTDS
MITREへのリンク →

Earth Lusca

Score: 6.82
Matched TTPs:
  • T1007 - System Service Discovery
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
MITREへのリンク →

admin@338

Score: 4.02
Matched TTPs:
  • T1007 - System Service Discovery
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

APT1

Score: 3.37
Matched TTPs:
  • T1007 - System Service Discovery
  • T1588.002 - Tool
MITREへのリンク →

BlackByte

Score: 9.55
Matched TTPs:
  • T1562 - Impair Defenses
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

Magic Hound

Score: 13.71
Matched TTPs:
  • T1562 - Impair Defenses
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1102.002 - Bidirectional Communication
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

TA2541

Score: 5.57
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1588.002 - Tool
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

Star Blizzard

Score: 5.16
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
MITREへのリンク →

Threat Group-3390

Score: 9.92
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1608.002 - Upload Tool
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

BITTER

Score: 4.32
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

APT32

Score: 11.38
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1218.010 - Regsvr32
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

HEXANE

Score: 7.56
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

Saint Bear

Score: 3.47
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

EXOTIC LILY

Score: 8.33
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1585.001 - Social Media Accounts
  • T1203 - Exploitation for Client Execution
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

APT42

Score: 5.57
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1588.002 - Tool
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

BlackTech

Score: 3.81
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Medusa Group

Score: 24.56
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1608.002 - Upload Tool
  • T1657 - Financial Theft
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1573.002 - Asymmetric Cryptography
  • T1650 - Acquire Access
  • T1003.003 - NTDS
  • T1529 - System Shutdown/Reboot
MITREへのリンク →

Sea Turtle

Score: 3.81
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Storm-0501

Score: 6.74
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1657 - Financial Theft
  • T1218.010 - Regsvr32
MITREへのリンク →

Fox Kitten

Score: 6.15
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1585.001 - Social Media Accounts
  • T1003.003 - NTDS
MITREへのリンク →

Cinnamon Tempest

Score: 4.84
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1657 - Financial Theft
  • T1588.002 - Tool
MITREへのリンク →

Agrius

Score: 3.44
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

menuPass

Score: 4.66
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1003.003 - NTDS
MITREへのリンク →

ToddyCat

Score: 3.99
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Blue Mockingbird

Score: 5.07
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1218.010 - Regsvr32
MITREへのリンク →

GALLIUM

Score: 7.44
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1027.005 - Indicator Removal from Tools
MITREへのリンク →

Winter Vivern

Score: 3.44
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

Leviathan

Score: 10.02
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
  • T1585.001 - Social Media Accounts
  • T1218.010 - Regsvr32
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

INC Ransom

Score: 4.84
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1657 - Financial Theft
  • T1588.002 - Tool
MITREへのリンク →

Dragonfly

Score: 6.15
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
  • T1003.003 - NTDS
MITREへのリンク →

Axiom

Score: 7.50
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1203 - Exploitation for Client Execution
  • T1001.002 - Steganography
MITREへのリンク →

HAFNIUM

Score: 3.81
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1003.003 - NTDS
MITREへのリンク →

MuddyWater

Score: 8.18
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

APT39

Score: 6.69
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

MoustachedBouncer

Score: 4.54
Matched TTPs:
  • T1659 - Content Injection
MITREへのリンク →

Equation

Score: 4.54
Matched TTPs:
  • T1542.002 - Component Firmware
MITREへのリンク →

Water Galura

Score: 4.86
Matched TTPs:
  • T1657 - Financial Theft
  • T1585.001 - Social Media Accounts
MITREへのリンク →

APT33

Score: 6.48
Matched TTPs:
  • T1552.006 - Group Policy Preferences
  • T1588.002 - Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Wizard Spider

Score: 9.30
Matched TTPs:
  • T1552.006 - Group Policy Preferences
  • T1041 - Exfiltration Over C2 Channel
  • T1588.002 - Tool
  • T1003.003 - NTDS
MITREへのリンク →

Higaisa

Score: 3.47
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

ZIRCONIUM

Score: 4.37
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

Confucius

Score: 3.47
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

CURIUM

Score: 6.84
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1585.001 - Social Media Accounts
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Inception

Score: 5.09
Matched TTPs:
  • T1588.002 - Tool
  • T1218.010 - Regsvr32
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

LAPSUS$

Score: 3.19
Matched TTPs:
  • T1588.002 - Tool
  • T1003.003 - NTDS
MITREへのリンク →

Storm-1811

Score: 3.37
Matched TTPs:
  • T1588.002 - Tool
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

FIN8

Score: 3.60
Matched TTPs:
  • T1588.002 - Tool
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

FIN6

Score: 8.46
Matched TTPs:
  • T1588.002 - Tool
  • T1573.002 - Asymmetric Cryptography
  • T1003.003 - NTDS
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Patchwork

Score: 5.49
Matched TTPs:
  • T1588.002 - Tool
  • T1027.005 - Indicator Removal from Tools
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

WIRTE

Score: 3.60
Matched TTPs:
  • T1588.002 - Tool
  • T1218.010 - Regsvr32
MITREへのリンク →

Cobalt Group

Score: 7.83
Matched TTPs:
  • T1588.002 - Tool
  • T1218.010 - Regsvr32
  • T1203 - Exploitation for Client Execution
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

POLONIUM

Score: 3.25
Matched TTPs:
  • T1588.002 - Tool
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

APT38

Score: 4.47
Matched TTPs:
  • T1588.002 - Tool
  • T1529 - System Shutdown/Reboot
MITREへのリンク →

APT19

Score: 3.60
Matched TTPs:
  • T1588.002 - Tool
  • T1218.010 - Regsvr32
MITREへのリンク →

Carbanak

Score: 3.25
Matched TTPs:
  • T1588.002 - Tool
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

Deep Panda

Score: 5.90
Matched TTPs:
  • T1027.005 - Indicator Removal from Tools
  • T1218.010 - Regsvr32
MITREへのリンク →

APT37

Score: 7.51
Matched TTPs:
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
  • T1529 - System Shutdown/Reboot
MITREへのリンク →

APT12

Score: 3.89
Matched TTPs:
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Tropic Trooper

Score: 4.24
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

Velvet Ant

Score: 6.88
Matched TTPs:
  • T1573.002 - Asymmetric Cryptography
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

APT28

Score: 0.87
Matched TTPs:
  • T1014 - Rootkit
  • T1498 - Network Denial of Service
  • T1025 - Data from Removable Media
  • T1203 - Exploitation for Client Execution
  • T1102.002 - Bidirectional Communication
  • T1003.003 - NTDS
  • T1211 - Exploitation for Defense Evasion
  • T1588.002 - Tool
  • T1669 - Wi-Fi Networks
  • T1546.015 - Component Object Model Hijacking
  • T1190 - Exploit Public-Facing Application
MITREへのリンク →

Lazarus Group

Score: 0.69
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1587.001 - Malware
  • T1203 - Exploitation for Client Execution
  • T1561.001 - Disk Content Wipe
  • T1588.002 - Tool
  • T1027.007 - Dynamic API Resolution
  • T1566.003 - Spearphishing via Service
  • T1585.001 - Social Media Accounts
  • T1529 - System Shutdown/Reboot
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

Sandworm Team

Score: 0.67
Matched TTPs:
  • T1195 - Supply Chain Compromise
  • T1041 - Exfiltration Over C2 Channel
  • T1587.001 - Malware
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
  • T1491.002 - External Defacement
  • T1003.003 - NTDS
  • T1588.002 - Tool
  • T1608.001 - Upload Malware
  • T1585.001 - Social Media Accounts
  • T1190 - Exploit Public-Facing Application
MITREへのリンク →

Medusa Group

Score: 0.66
Matched TTPs:
  • T1608.002 - Upload Tool
  • T1573.002 - Asymmetric Cryptography
  • T1003.003 - NTDS
  • T1657 - Financial Theft
  • T1650 - Acquire Access
  • T1588.002 - Tool
  • T1585.001 - Social Media Accounts
  • T1529 - System Shutdown/Reboot
  • T1190 - Exploit Public-Facing Application
MITREへのリンク →

OilRig

Score: 0.64
Matched TTPs:
  • T1195 - Supply Chain Compromise
  • T1027.005 - Indicator Removal from Tools
  • T1573.002 - Asymmetric Cryptography
  • T1025 - Data from Removable Media
  • T1587.001 - Malware
  • T1203 - Exploitation for Client Execution
  • T1566.003 - Spearphishing via Service
  • T1588.002 - Tool
  • T1608.001 - Upload Malware
  • T1007 - System Service Discovery
MITREへのリンク →

Kimsuky

Score: 0.59
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1587.001 - Malware
  • T1102.002 - Bidirectional Communication
  • T1218.010 - Regsvr32
  • T1657 - Financial Theft
  • T1588.002 - Tool
  • T1608.001 - Upload Malware
  • T1007 - System Service Discovery
  • T1585.001 - Social Media Accounts
  • T1190 - Exploit Public-Facing Application
MITREへのリンク →

Gamaredon Group

Score: 0.57
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1001 - Data Obfuscation
  • T1025 - Data from Removable Media
  • T1561.001 - Disk Content Wipe
  • T1588.002 - Tool
  • T1608.001 - Upload Malware
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る