
| Names | Crypta | |
| Category | Malware | |
| Type | Loader | |
| Description | (Kaspersky) Dropping Elephant introduced a new loader for BADNEWS, a tool we named Crypta. It contains mechanisms to hinder detection and appears to be a core component of this APT actor’s recent toolset. Crypta and its variants have been observed in multiple scenarios loading a wide range of subsequent payloads, such as Bozok, QuasarRAT and LokiBot. | |
| Information | <https://securelist.com/apt-trends-report-q1-2021/101967/> | |
Last change to this tool card: 16 May 2021
Download this tool card in JSON format
| Changed | Name | Country | Observed | ||
APT groups | |||||
| Patchwork, Dropping Elephant | 2013-Jun 2025 | ||||
1 group listed (1 APT, 0 other, 0 unknown)
|
Digital Service Security Center Follow us on |
Report incidents |
|
| +66 (0)2-123-1227 | ||
| [email protected] | ||