Names | RIFLESPINE | |
Category | Malware | |
Type | Backdoor | |
Description | (Mandiant) RIFLESPINE is a cross-platform backdoor that leverages Google Drive to transfer files and execute commands. It adopts the CryptoPP library to implement the AES algorithm to encrypt and decrypt the data transmitted between an affected machine and the threat actor. | |
Information | <https://cloud.google.com/blog/topics/threat-intelligence/uncovering-unc3886-espionage-operations> |
Last change to this tool card: 26 August 2024
Download this tool card in JSON format
Changed | Name | Country | Observed | ||
APT groups | |||||
UNC3886 | 2021-2023 |
1 group listed (1 APT, 0 other, 0 unknown)
Digital Service Security Center Follow us on |
Report incidents |
|
+66 (0)2-123-1227 | ||
[email protected] |