Names | MINIBUS | |
Category | Malware | |
Type | Backdoor | |
Description | (Mandiant) Mandiant observed a second backdoor deployed in this campaign, which bears multiple similarities to MINIBIKE and was therefore named MINIBUS. The MINIBUS platform has been used since at least August 2023, likely during the same time as the latest MINIBIKE versions, though not necessarily to target the same victims. | |
Information | <https://cloud.google.com/blog/topics/threat-intelligence/suspected-iranian-unc1549-targets-israel-middle-east> | |
Malpedia | <https://malpedia.caad.fkie.fraunhofer.de/details/win.minibus> |
Last change to this tool card: 29 December 2024
Download this tool card in JSON format
Changed | Name | Country | Observed | ||
APT groups | |||||
↳ Subgroup: TA455, Smoke Sandstorm | 2021-Sep 2023 |
1 group listed (1 APT, 0 other, 0 unknown)
Digital Service Security Center Follow us on |
Report incidents |
|
+66 (0)2-123-1227 | ||
[email protected] |