HOPLIGHT
The MITRE Corporation
· Published 19/04/2019 17:30 · Modified 27/03/2026 01:03
Family
Essential information
- Confidence
- 100/100
- Is family
- Yes
- Published
- 19/04/2019 17:30
- Modified
- 27/03/2026 01:03
- Revoked
- No
- Author / Source
- The MITRE Corporation
- Related entities
- 22 attack patterns (mitre), 2 intrusion sets (apt), 2 sectors, 2 countries, 38 indicators
Description
[HOPLIGHT](https://attack.mitre.org/software/S0376) is a backdoor Trojan that has reportedly been used by the North Korean government.(Citation: US-CERT HOPLIGHT Apr 2019)
Marking (TLP)
TLP:CLEAR Copyright 2015-2025, The MITRE Corporation. MITRE ATT&CK and ATT&CK are registered trademarks of The MITRE Corporation.
External references
Related entities
Attack patterns, malware, vulnerabilities, indicators, intrusion sets and other entities linked to this malware.
Attack patterns (MITRE) (22)
-
T1008 usesFallback Channels MITRE
-
-
-
T1082 usesSystem Information Discovery MITRE
-
T1569.002 usesService Execution MITRE
-
T1571 usesNon-Standard Port MITRE
-
T1546.003 MITRE
-
T1083 usesFile and Directory Discovery MITRE
-
T1047 usesWindows Management Instrumentation MITRE
-
T1041 usesExfiltration Over C2 Channel MITRE
-
T1550.002 usesPass the Hash MITRE
-
T1059.003 usesWindows Command Shell MITRE
Intrusion sets (APT) (2)
-
The MITRE Corporation Confidence 100
[APT38](https://attack.mitre.org/groups/G0082) is a North Korean state-sponsored threat group that specializes in financial cyber operations; it has been attributed to the Reconnaissance General Bureau.(Citation: CISA AA20-239A BeagleBoyz August 2020)…
First seen 01/01/1970 · Last seen 16/11/5138 · -
The MITRE Corporation Confidence 100
[Lazarus Group](https://attack.mitre.org/groups/G0032) is a North Korean state-sponsored cyber threat group attributed to the Reconnaissance General Bureau (RGB). (Citation: US-CERT HIDDEN COBRA June 2017) (Citation: Treasury North Korean Cyber…
First seen 01/01/1970 · Last seen 16/11/5138 ·
Sectors (2)
-
Finance targets
-
Government targets
Countries (2)
-
United States targets
-
Korea, Republic of targets
Indicators (38)
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100· Valid until 26/01/2027 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 19/05/2021 · Source: AlienVault