S0398Windows

S0398HyperBro

Platforms
1
ATT&CK
14.1
References
4

Description

[HyperBro](https://attack.mitre.org/software/S0398) is a custom in-memory backdoor used by [Threat Group-3390](https://attack.mitre.org/groups/G0027).(Citation: Unit42 Emissary Panda May 2019)(Citation: Securelist LuckyMouse June 2018)(Citation: Hacker News LuckyMouse June 2018) Documented platforms: Windows. Attributed to ATT&CK group: Threat Group-3390. Catalogued in ATT&CK 14.1. 4 references curated.

Platforms· 1

Windows

Attributed to1

TypeTargetConfidenceTier
GroupThreat Group-3390g0027100%live

References

  1. https://attack.mitre.org/software/S0398
  2. https://unit42.paloaltonetworks.com/emissary-panda-attacks-middle-east-government-sharepoint-servers/
  3. https://securelist.com/luckymouse-hits-national-data-center/86083/
  4. https://thehackernews.com/2018/06/chinese-watering-hole-attack.html

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
HyperStack
Software
HAWKBALL
Software
Exaramel for Windows
Software
SDBbot
Software
Hikit
Software
HTTPBrowser
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.