Skeleton Spider

Threat Actor updated 5 months ago (2024-05-04T19:37:23.791Z)
Download STIX
Preview STIX
Skeleton Spider is a financially motivated threat actor that has been observed targeting POS machines used by retailers in Europe and the U.S. This threat actor was first identified two years ago and goes by other names such as FIN6 or ITG08. It employs the Golden Chickens service to anchor its intrusions, which enables it to gain unauthorized access to POS systems and steal payment card data. According to security intelligence reports, Skeleton Spider's activities have been ongoing since its initial discovery and have continued to evolve over time. In addition to its involvement in POS system breaches, this threat actor has also been linked to other cybercrime activities such as ransomware attacks and data theft. Furthermore, cybersecurity researchers have uncovered personal information about the threat actor, including the identities of their family members. This information could potentially aid in the identification and apprehension of the perpetrator(s) behind Skeleton Spider's operations, although it is not clear whether any progress has been made in this regard.
Description last updated: 2023-06-13T18:19:34.791Z
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the Skeleton Spider Threat Actor was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
CERT-EU
a year ago