As cited
Copy frozen at (site build).
threat intel
Tortoiseshell Expands Malware Toolset With New Backdoor, SSH Tunnel
Group-IB discovered new infrastructure associated with the Tortoiseshell threat group, which includes a previously unknown backdoor and SSH tunneling capability. The findings indicate an expansion of the group's malware arsenal.
Why it matters: Practitioners defending against Tortoiseshell need to update detection rules and threat intelligence feeds to identify the new backdoor and SSH tools being deployed in the wild.
- Source published
- First seen by Cybersecurity Tracker