mirror of
https://github.com/MISP/misp-galaxy.git
synced 2024-11-22 23:07:19 +00:00
[threat-actors] Add JuiceLedger
This commit is contained in:
parent
09bd93f488
commit
4d94ff0c12
1 changed files with 10 additions and 0 deletions
|
@ -16209,6 +16209,16 @@
|
||||||
},
|
},
|
||||||
"uuid": "b7f37e61-0e1c-4818-9a04-8f83afdd337c",
|
"uuid": "b7f37e61-0e1c-4818-9a04-8f83afdd337c",
|
||||||
"value": "Adrastea"
|
"value": "Adrastea"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"description": "JuiceLedger is a threat actor known for infostealing through their JuiceStealer .NET assembly. They have evolved from spreading fraudulent applications to conducting supply chain attacks, targeting PyPI contributors with phishing campaigns and typosquatting. Their malicious packages contain a code snippet that downloads and executes JuiceStealer, which has evolved to support additional browsers and Discord. Victims of JuiceLedger attacks are advised to reset passwords and report any suspicious activity to security@pypi.org.",
|
||||||
|
"meta": {
|
||||||
|
"refs": [
|
||||||
|
"https://www.sentinelone.com/labs/pypi-phishing-campaign-juiceledger-threat-actor-pivots-from-fake-apps-to-supply-chain-attacks/"
|
||||||
|
]
|
||||||
|
},
|
||||||
|
"uuid": "8f4eb6bc-3d3d-49e4-82d8-500c7bb0a2ec",
|
||||||
|
"value": "JuiceLedger"
|
||||||
}
|
}
|
||||||
],
|
],
|
||||||
"version": 312
|
"version": 312
|
||||||
|
|
Loading…
Reference in a new issue