S0026Windows

S0026GLOOXMAIL

Platforms
1
ATT&CK
14.1
References
2

Description

[GLOOXMAIL](https://attack.mitre.org/software/S0026) is malware used by [APT1](https://attack.mitre.org/groups/G0006) that mimics legitimate Jabber/XMPP traffic. (Citation: Mandiant APT1) Documented platforms: Windows. Attributed to ATT&CK group: APT1. Catalogued in ATT&CK 14.1. 2 references curated.

Platforms· 1

Windows

Attributed to1

TypeTargetConfidenceTier
GroupAPT1g0006100%live

References

  1. https://attack.mitre.org/software/S0026
  2. https://www.fireeye.com/content/dam/fireeye-www/services/pdfs/mandiant-apt1-report.pdf

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
CALENDAR
Software
WellMail
Software
Smoke Loader
Software
XAgentOSX
Software
POORAIM
Software
P8RAT
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.