mirror of
https://github.com/MISP/misp-galaxy.git
synced 2024-11-26 16:57:18 +00:00
Add Comnie RAT.
This commit is contained in:
parent
13ca5c4245
commit
8c861848f8
1 changed files with 11 additions and 0 deletions
|
@ -2421,6 +2421,17 @@
|
||||||
"https://github.com/xlinshan/Coldroot"
|
"https://github.com/xlinshan/Coldroot"
|
||||||
]
|
]
|
||||||
}
|
}
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"value": "Comnie",
|
||||||
|
"description": "Comnie is a RAT originally identified by Sophos. It has been using Github, Tumbler and Blogspot as covert channels for its C2 communications. Comnie has been observed targetting government, defense, aerospace, high-tech and telecommunication sectors in Asia.",
|
||||||
|
"uuid": "fbc5bbb2-38b4-4fa3-9b9f-624e05cdc648",
|
||||||
|
"meta": {
|
||||||
|
"refs": [
|
||||||
|
"https://exchange.xforce.ibmcloud.com/collection/East-Asia-Organizations-Victims-of-Comnie-Attack-12749a9dbc20e2f40b3ae99c43416d8c",
|
||||||
|
"https://researchcenter.paloaltonetworks.com/2018/01/unit42-comnie-continues-target-organizations-east-asia/"
|
||||||
|
]
|
||||||
|
}
|
||||||
}
|
}
|
||||||
]
|
]
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in a new issue