mirror of
https://github.com/MISP/misp-galaxy.git
synced 2024-11-29 18:27:19 +00:00
[threat-actors] jq
This commit is contained in:
parent
fdac01cd89
commit
6f3b85399b
1 changed files with 1 additions and 1 deletions
|
@ -11187,6 +11187,7 @@
|
||||||
{
|
{
|
||||||
"description": "ROMCOM is an evolving and sophisticated threat actor group that has been using the malware tool ROMCOM for espionage and financially motivated attacks. They have targeted organizations in Ukraine and NATO countries, including military personnel, government agencies, and political leaders. The ROMCOM backdoor is capable of stealing sensitive information and deploying other malware, showcasing the group's adaptability and growing sophistication.",
|
"description": "ROMCOM is an evolving and sophisticated threat actor group that has been using the malware tool ROMCOM for espionage and financially motivated attacks. They have targeted organizations in Ukraine and NATO countries, including military personnel, government agencies, and political leaders. The ROMCOM backdoor is capable of stealing sensitive information and deploying other malware, showcasing the group's adaptability and growing sophistication.",
|
||||||
"meta": {
|
"meta": {
|
||||||
|
"country": "RU",
|
||||||
"refs": [
|
"refs": [
|
||||||
"https://blogs.blackberry.com/en/2022/11/romcom-spoofing-solarwinds-keepass",
|
"https://blogs.blackberry.com/en/2022/11/romcom-spoofing-solarwinds-keepass",
|
||||||
"https://blogs.blackberry.com/en/2022/10/unattributed-romcom-threat-actor-spoofing-popular-apps-now-hits-ukrainian-militaries",
|
"https://blogs.blackberry.com/en/2022/10/unattributed-romcom-threat-actor-spoofing-popular-apps-now-hits-ukrainian-militaries",
|
||||||
|
@ -11195,7 +11196,6 @@
|
||||||
"https://blogs.blackberry.com/en/2023/07/decoding-romcom-behaviors-and-opportunities-for-detection",
|
"https://blogs.blackberry.com/en/2023/07/decoding-romcom-behaviors-and-opportunities-for-detection",
|
||||||
"https://www.trendmicro.com/en_us/research/23/e/void-rabisu-s-use-of-romcom-backdoor-shows-a-growing-shift-in-th.html"
|
"https://www.trendmicro.com/en_us/research/23/e/void-rabisu-s-use-of-romcom-backdoor-shows-a-growing-shift-in-th.html"
|
||||||
],
|
],
|
||||||
"country": "RU",
|
|
||||||
"synonyms": [
|
"synonyms": [
|
||||||
"Storm-0978"
|
"Storm-0978"
|
||||||
]
|
]
|
||||||
|
|
Loading…
Reference in a new issue