
| Names | CACTUSTORCH | |
| Category | Tools | |
| Type | Loader | |
| Description | According to the GitHub repo, CACTUSTORCH is a JavaScript and VBScript shellcode launcher. It will spawn a 32 bit version of the binary specified and inject shellcode into it. | |
| Information | <https://www.mcafee.com/blogs/other-blogs/mcafee-labs/cactustorch-fileless-threat-abuses-net-to-infect-victims/> <https://github.com/mdsecactivebreach/CACTUSTORCH> <https://www.codercto.com/a/46729.html> | |
| Malpedia | <https://malpedia.caad.fkie.fraunhofer.de/details/js.cactustorch> | |
| AlienVault OTX | <https://otx.alienvault.com/browse/pulses?q=tag:cactustorch> | |
Last change to this tool card: 13 May 2020
Download this tool card in JSON format
| Changed | Name | Country | Observed | ||
APT groups | |||||
| APT 32, OceanLotus, SeaLotus | 2013-Aug 2024 | ![]() | |||
1 group listed (1 APT, 0 other, 0 unknown)
|
Digital Service Security Center Follow us on |
Report incidents |
|
| +66 (0)2-123-1227 | ||
| [email protected] | ||