Skip to content

[Intel]: https://unit42.paloaltonetworks.com/alloy-taurus/ #646

Open
@timb-machine

Description

Area

Malware reports

Parent threat

Command and Control

Finding

https://unit42.paloaltonetworks.com/alloy-taurus/

Industry reference

attack:T1071:Application Layer Protocol
attack:T1071.001:Web Protocols
attack:T1132:Data Encoding
attack:T1132.001:Standard Encoding
attack:T1573:Encrypted Channel
attack:T1573.001:Symmetric Cryptography

Malware reference

Sword2033
PingBull
wltm

Actor reference

Alloy Taurus
GALLIUM
Soft Cell

Component

Linux

Scenario

No response