Snake Keylogger
Essential information
- Confidence
- 100/100
- Published
- 21/12/2025 14:48
- Modified
- 21/12/2025 14:48
- Updated at
- 21/12/2025 14:48
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 1 reports, 13 attack patterns (mitre), 1 malware, 1 sectors, 4 countries, 1 indicators, 4 vulnerabilities (cve)
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (1)
-
13 MITREs 1 Malware 1 APT
Attack patterns (MITRE) (13)
-
T1574.002 uses
-
T1566.001 usesSpearphishing Attachment MITRE
-
T1082 usesSystem Information Discovery MITRE
-
T1053.005 usesScheduled Task MITRE
-
T1012 usesQuery Registry MITRE
-
T1083 usesFile and Directory Discovery MITRE
-
T1059.003 usesWindows Command Shell MITRE
-
T1033 usesSystem Owner/User Discovery MITRE
-
T1114 usesEmail Collection MITRE
-
T1555 usesCredentials from Password Stores MITRE
-
T1078 usesValid Accounts MITRE
-
T1005 usesData from Local System MITRE
Malware (1)
-
Snake Keylogger usesFamily
Sectors (1)
-
Energy targets
Countries (4)
-
Kazakhstan targets
-
Israel targets
-
Iran, Islamic Republic of targets
-
United States of America targets
Indicators (1)
-
stix 100/100
Win.Malware.Generic-10008460-0
· Valid until 27/06/2026 · Source: AlienVault
Vulnerabilities (CVE) (4)
The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, …
- Attack vector
- NETWORK
- Published
- 11/03/2025
- Modified
- 21/12/2025
Google Chromium V8 contains a type confusion vulnerability that could allow a remote attacker to perform arbitrary read/write via a crafted HTML …
- Attack vector
- Network
- Published
- 02/07/2025
- Modified
- 21/12/2025
Sudo contains an inclusion of functionality from untrusted control sphere vulnerability. This vulnerability could allow local attacker to leverage sudo’s -R (--chroot) …
- Attack vector
- Local
- Published
- 29/09/2025
- Modified
- 27/05/2026
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily …
- Attack vector
- LOCAL
- Published
- 17/04/2024
- Modified
- 21/12/2025