Skip to content

Commit

Permalink
chg: [threat-actor] SideWinder APT group added
Browse files Browse the repository at this point in the history
  • Loading branch information
adulau committed Jan 7, 2020
1 parent 0296ca0 commit 5da0c7b
Showing 1 changed file with 12 additions and 1 deletion.
13 changes: 12 additions & 1 deletion clusters/threat-actor.json
Expand Up @@ -7861,7 +7861,18 @@
},
"uuid": "f9702059-97f4-4fc0-810b-3041b918f5d7",
"value": "BRONZE PRESIDENT"
},
{
"description": "An actor mainly targeting Pakistan military targets, active since at least 2012. We have low confidence that this malware might be authored by an Indian company. To spread the malware, they use unique implementations to leverage the exploits of known vulnerabilities (such as CVE-2017-11882) and later deploy a Powershell payload in the final stages.",
"meta": {
"refs": [
"https://securelist.com/apt-trends-report-q1-2018/85280/",
"https://blog.trendmicro.com/trendlabs-security-intelligence/first-active-attack-exploiting-cve-2019-2215-found-on-google-play-linked-to-sidewinder-apt-group/"
]
},
"uuid": "c4ce1174-9462-47e9-8038-794f40a184b3",
"value": "SideWinder"
}
],
"version": 148
"version": 149
}

0 comments on commit 5da0c7b

Please sign in to comment.