CL-STA-1009
· Published 21/12/2025 17:58 · Modified 21/12/2025 17:58
· Source: AlienVault
Essential information
- Confidence
- 100/100
- Published
- 21/12/2025 17:58
- Modified
- 21/12/2025 17:58
- Updated at
- 21/12/2025 17:58
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 1 reports, 17 attack patterns (mitre), 1 malware, 3 sectors, 6 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (1)
-
13 MITREs 1 Malware 6 Observables 1 APT
Attack patterns (MITRE) (17)
-
T1217 usesBrowser Information Discovery MITRE
-
T1078.004 usesCloud Accounts MITRE
-
T1059.003 usesWindows Command Shell MITRE
-
T1055 usesProcess Injection MITRE
-
T1574.001 usesDLL MITRE
-
T1547.001 usesRegistry Run Keys / Startup Folder MITRE
-
T1027 usesObfuscated Files or Information MITRE
-
T1036.005 usesMatch Legitimate Resource Name or Location MITRE
-
T1176 usesSoftware Extensions MITRE
-
T1102.002 usesBidirectional Communication MITRE
-
T1219 usesRemote Access Tools MITRE
-
T1552.001 usesCredentials In Files MITRE
Malware (1)
-
Airstalk usesFamily
Sectors (3)
-
Defense targets
-
Technology targets
-
Government targets
Indicators (6)
-
dfdc27d81a6a21384d6dba7dcdc4c7f9348cf1bdc6df7521b886108b71b41533indicates -
4e4cbaed015dfbda3c368ca4442cd77a0a2d5e65999cd6886798495f2c29fcd5indicates -
1f8f494cc75344841e77d843ef53f8c5f1beaa2f464bcbe6f0aacf2a0757c8b5indicates -
b6d37334034cd699a53df3e0bcac5bbdf32d52b4fa4944e44488bd2024ad719bindicates -
0c444624af1c9cce6532a6f88786840ebce6ed3df9ed570ac75e07e30b0c0bdeindicates -
3a48ea6857f1b6ae28bd1f4a07990a080d854269b1c1563c9b2e330686eb23b5indicates