CORALDECK

CORALDECKCORALDECK

Description

CORALDECK is an exfiltration tool that searches for specified files and exfiltrates them in password protected archives using hardcoded HTTP POST headers. CORALDECK has been observed dropping and using Winrar to exfiltrate data in password protected RAR files as well as WinImage and zip archives

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
CorruptCrypt
Software
OceanSalt
Software
SEASALT
Software
TEARDROP
Software
GELCAPSULE
Software
Extractor
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.