Common Information
Type Value
Value
xdr33
Category Tool
Type Malpedia
Misp Type Cluster
Description According to 360 netlab, this backdoor was derived from the leaked CIA Hive project. It propagates via a vulnerability in F5 and communicates using SSL with a forged Kaspersky certificate.
Details Published Attributes CTI Title
Details Website 2023-01-12 79 Bluepurple Pulse: week ending January 15th
Details Website 2023-01-10 10 Heads up! Xdr33, A Variant Of CIA’s HIVE Attack Kit Emerges
Details Website 2023-01-09 8 警惕:魔改后的CIA攻击套件Hive进入黑灰产领域