[Intel]: https://www.mandiant.com/resources/blog/messagetap-who-is-reading-your-text-messages #542
Open
Description
Area
Malware reports
Parent threat
Defense Evasion, Discovery, Collection, Exfiltration
Finding
https://www.mandiant.com/resources/blog/messagetap-who-is-reading-your-text-messages
Industry reference
vertical:Telecomms
attack:T1040:Network Sniffing
uses:Non-persistentStorage
attack:T1070.004:File Deletion
Malware reference
MESSAGETAP
/malware/binaries/MESSAGETAP
Actor reference
APT41
Component
Linux, Telecomms
Scenario
Internal specialist services