[threat-actors] Add BlueBottle

This commit is contained in:
Mathieu4141 2023-11-07 10:37:08 -08:00
parent 59bd2763bc
commit 56f990d100

View file

@ -12787,6 +12787,16 @@
},
"uuid": "83764206-8012-47c6-9c7a-dc04c99559e7",
"value": "Xcatze"
},
{
"description": "Bluebottle, a cyber-crime group that specializes in targeted attacks against the financial sector, is continuing to mount attacks on banks in Francophone countries. The group makes extensive use of living off the land, dual-use tools, and commodity malware, with no custom malware deployed in this campaign.",
"meta": {
"refs": [
"http://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/bluebottle-banks-targeted-africa"
]
},
"uuid": "87f1ab70-a102-4566-a09e-838b39c18a62",
"value": "BlueBottle"
}
],
"version": 293