Alias Description | Association Type | Votes |
---|---|---|
The RomCom Malware is associated with CVE-2023-36884. The RomCom malware, a Remote Access Trojan (RAT), has been linked to Cuba ransomware actors and Industrial Spy ransomware actors, according to third-party and open-source reports. Since spring 2022, the Russian-speaking group UAT-5647, also known as RomCom, has targeted Ukrainian government entities | Unspecified | 3 |
Alias Description | Association Type | Votes |
---|---|---|
The Void Rabisu Threat Actor is associated with CVE-2023-36884. Void Rabisu, also known as Storm-0978, UNC2596, and Tropical Scorpius, is a malicious software (malware) notable for its use of the ROMCOM backdoor. This malware has been involved in numerous attacks, including those targeting attendees of the Women Political Leaders Summit (WPL Summit) in 2023. In | Unspecified | 3 |
Preview | Source Link | CreatedAt | Title |
---|---|---|---|
Contagio | 3 months ago | ||
Fortinet | 3 months ago | ||
Securelist | 3 months ago | ||
Securelist | a year ago | ||
CERT-EU | a year ago | ||
CERT-EU | a year ago | ||
CERT-EU | a year ago | ||
Unit42 | a year ago | ||
CERT-EU | a year ago | ||
InfoSecurity-magazine | a year ago | ||
CERT-EU | a year ago | ||
Trend Micro | a year ago | ||
CERT-EU | a year ago | ||
CERT-EU | a year ago | ||
CERT-EU | a year ago | ||
CrowdStrike | a year ago | ||
Krebs on Security | a year ago | ||
CERT-EU | a year ago | ||
Malwarebytes | a year ago | ||
CERT-EU | a year ago |