S0439Windows

S0439Okrum

Platforms
1
ATT&CK
14.1
References
2

Description

[Okrum](https://attack.mitre.org/software/S0439) is a Windows backdoor that has been seen in use since December 2016 with strong links to [Ke3chang](https://attack.mitre.org/groups/G0004).(Citation: ESET Okrum July 2019) Documented platforms: Windows. Attributed to ATT&CK group: Ke3chang. Catalogued in ATT&CK 14.1. 2 references curated.

Platforms· 1

Windows

Attributed to1

TypeTargetConfidenceTier
GroupKe3changg0004100%live

References

  1. https://attack.mitre.org/software/S0439
  2. https://www.welivesecurity.com/wp-content/uploads/2019/07/ESET_Okrum_and_Ketrican.pdf

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
EVILNUM
Software
Exaramel for Windows
Software
ShimRat
Software
PowerDuke
Software
Spark
Software
ObliqueRAT
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.