S0164Windows

S0164TDTESS

Platforms
1
ATT&CK
14.1
References
2

Description

[TDTESS](https://attack.mitre.org/software/S0164) is a 64-bit .NET binary backdoor used by [CopyKittens](https://attack.mitre.org/groups/G0052). (Citation: ClearSky Wilted Tulip July 2017) Documented platforms: Windows. Attributed to ATT&CK group: CopyKittens. Catalogued in ATT&CK 14.1. 2 references curated.

Platforms· 1

Windows

Attributed to1

TypeTargetConfidenceTier
GroupCopyKittensg0052100%live

References

  1. https://attack.mitre.org/software/S0164
  2. http://www.clearskysec.com/wp-content/uploads/2017/07/Operation_Wilted_Tulip.pdf

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
TEXTMATE
Software
DustySky
Software
TinyTurla
Software
ELMER
Software
SDBbot
Software
HAMMERTOSS
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.