S0086Windows

S0086ZLib

Platforms
1
ATT&CK
14.1
References
2

Description

[ZLib](https://attack.mitre.org/software/S0086) is a full-featured backdoor that was used as a second-stage implant during [Operation Dust Storm](https://attack.mitre.org/campaigns/C0016) since at least 2014. [ZLib](https://attack.mitre.org/software/S0086) is malware and should not be confused with the legitimate compression library from which its name is derived.(Citation: Cylance Dust Storm)

Platforms· 1

Windows

References

  1. https://attack.mitre.org/software/S0086
  2. https://s7d2.scene7.com/is/content/cylance/prod/cylance-web/en-us/resources/knowledge-center/resource-library/reports/Op_Dust_Storm_Report.pdf

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
S-Type
Software
Misdat
Software
Mis-Type
Software
ZxxZ
Software
Mosquito
Software
EVILNUM
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.