
| Names | RottenPotato | |
| Category | Exploits | |
| Type | Backdoor | |
| Description | (ClearSky) Local Privilege Escalation tool from Windows Service Accounts to SYSTEM. | |
| Information | <https://www.clearskysec.com/wp-content/uploads/2021/01/Lebanese-Cedar-APT.pdf> | |
Last change to this tool card: 19 April 2021
Download this tool card in JSON format
| Changed | Name | Country | Observed | ||
APT groups | |||||
| Dalbit | 2022 | ||||
| Operation Harvest | 2016 | ||||
| Sandworm Team, Iron Viking, Voodoo Bear | 2009-Dec 2024 | ![]() | |||
| Volatile Cedar | 2012-Early 2020 | ||||
4 groups listed (4 APT, 0 other, 0 unknown)
|
Digital Service Security Center Follow us on |
Report incidents |
|
| +66 (0)2-123-1227 | ||
| [email protected] | ||