mirror of
https://github.com/MISP/misp-galaxy.git
synced 2024-11-26 16:57:18 +00:00
[threat-actors] Add GoldenJackal
This commit is contained in:
parent
64f0a87ed7
commit
73c73606ff
1 changed files with 11 additions and 0 deletions
|
@ -12216,6 +12216,17 @@
|
||||||
},
|
},
|
||||||
"uuid": "1f7f4a51-c4a8-4365-ade3-83b222e7cb67",
|
"uuid": "1f7f4a51-c4a8-4365-ade3-83b222e7cb67",
|
||||||
"value": "Earth Estries"
|
"value": "Earth Estries"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"description": "GoldenJackal activity is characterized by the use of compromised WordPress websites as a method to host C2-related logic. Kaspersky believes the attackers upload a malicious PHP file that is used as a relay to forward web requests to another backbone C2 server. They developed a collection of .NET malware tools known as Jackal.",
|
||||||
|
"meta": {
|
||||||
|
"refs": [
|
||||||
|
"https://securelist.com/it-threat-evolution-q2-2023/110355/",
|
||||||
|
"https://securelist.com/goldenjackal-apt-group/109677/"
|
||||||
|
]
|
||||||
|
},
|
||||||
|
"uuid": "8e93e09a-734d-4b16-933f-9feb58f6ce7d",
|
||||||
|
"value": "GoldenJackal"
|
||||||
}
|
}
|
||||||
],
|
],
|
||||||
"version": 288
|
"version": 288
|
||||||
|
|
Loading…
Reference in a new issue