Tropic Trooper Attacks Government Organizations to Steal Sensitive Data
Tags
country: | Hong Kong Philippines Taiwan |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Javascript - T1059.007 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Software - T1592.002 Web Shell - T1505.003 Windows Service - T1543.003 Web Shell - T1100 |
Common Information
Type | Value |
---|---|
UUID | 92d12bcf-e870-4ce4-a61a-9a4e4049e818 |
Fingerprint | 39cc1dc0c57737b2 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Sept. 6, 2024, 9:14 a.m. |
Added to db | Sept. 6, 2024, 11:37 a.m. |
Last updated | Nov. 17, 2024, 5:54 p.m. |
Headline | UNKNOWN |
Title | Tropic Trooper Attacks Government Organizations to Steal Sensitive Data |
Detected Hints/Tags/Attributes | 33/3/11 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://gbhackers.com/tropic-trooper-attack-steal-sensitive-data/ |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 125 | ✔ | GBHackers Security | #1 Globally Trusted Cyber Security News Platform | https://gbhackers.com/feed/ | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 168 | cve-2021-34473 |
|
Details | CVE | 142 | cve-2021-34523 |
|
Details | CVE | 143 | cve-2021-31207 |
|
Details | CVE | 39 | cve-2023-26360 |
|
Details | Domain | 911 | any.run |
|
Details | Domain | 4 | blog.techmersion.com |
|
Details | File | 5 | datast.dll |
|
Details | File | 89 | version.dll |
|
Details | File | 16 | colorcpl.exe |
|
Details | Threat Actor Identifier - APT | 16 | APT23 |
|
Details | Windows Registry Key | 188 | HKCU\Software\Microsoft\Windows\CurrentVersion\Run |