| Alias Description | Association Type | Votes |
|---|---|---|
| The Rootsaw Malware is associated with Wineloader. Rootsaw, also known as EnvyScout, is a first-stage payload malware extensively used by state-sponsored group APT29 for their initial access efforts in collecting foreign political intelligence. The malware is typically deployed via phishing emails with HTML file attachments or .HTA files, which exec | Unspecified | 2 |
| Alias Description | Association Type | Votes |
|---|---|---|
| The APT29 Threat Actor is associated with Wineloader. APT29, also known as Midnight Blizzard and linked to Russia's Foreign Intelligence Service (SVR), is a notorious threat actor that has been implicated in several high-profile cyberattacks. The group has demonstrated sophisticated capabilities, exploiting vulnerabilities such as the WinRAR 0day flaw | Unspecified | 3 |
| Preview | Source Link | CreatedAt | Title |
|---|---|---|---|
| Securityaffairs | 6 months ago | ||
| InfoSecurity-magazine | 6 months ago | ||
| Checkpoint | 6 months ago | ||
| InfoSecurity-magazine | 2 years ago | ||
| Securityaffairs | 2 years ago | ||
| DARKReading | 2 years ago |