Saturday, August 25, 2018

Gothic Pand, 3 Minute Profile

Gothic Panda/ UPS/ Pirpi/ Operation Clandestine Fox/ TG-0110/ BuckEye/ Group 6/ Operation Double Tap/ Operation Clandestine Wolf APT3 Active Since/Discovered: 2014 APT3 Last Report: June 2015 APT3 Target Sectors: energy sector, financial sector, technology industries, NGO/ International arena, aerospace and defense organizations, telecommunication companies, construction, high-tech, and transportation organizations Malware: Pirpi capable of gathering network adapter information, downloading files to memory, deleting files, listing directories, uploading files to the C2, executing processes, and other functionalities PlugX Kaba PluginDetect SHOTPUT backdoor Backdoor APT CookieCutter SportsLoader Preferred Attack Vector.

operationclandestinefox

No comments:

Post a Comment