S0128Windows

S0128BADNEWS

Platforms
1
ATT&CK
14.1
References
3

Description

[BADNEWS](https://attack.mitre.org/software/S0128) is malware that has been used by the actors responsible for the [Patchwork](https://attack.mitre.org/groups/G0040) campaign. Its name was given due to its use of RSS feeds, forums, and blogs for command and control. (Citation: Forcepoint Monsoon) (Citation: TrendMicro Patchwork Dec 2017)

Platforms· 1

Windows

References

  1. https://attack.mitre.org/software/S0128
  2. https://www.forcepoint.com/sites/default/files/resources/files/forcepoint-security-labs-monsoon-analysis-report.pdf
  3. https://documents.trendmicro.com/assets/tech-brief-untangling-the-patchwork-cyberespionage-group.pdf

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
BadPatch
Software
NEWSREELS
Software
BBSRAT
Software
Bazar
Software
BadBlock
Software
BADFLICK
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.