Uptime Hamster: 10d 7h 29mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza ANDROMEDA SPIDER

ANDROMEDA SPIDER

0 incidentes 0 paises 0 sectores apt BY Ultimo: -
Ver en IntelTracker → APTTrail →
ANDROMEDA SPIDER is a financially motivated cybercriminal group that emerged in late 2011, known for its sustained use and evolution of the modular Andromeda botnet, also referred to as Gamaru, Wauchos, or Win32/Gamarue. The group is assessed to be of Belarusian origin and focuses primarily on financial crimes and data theft, often targeting multinational organizations. Despite a major takedown operation in December 2017 targeting the Andromeda botnet, the group has demonstrated resilience with new malware variants and continued activity, including a resurgence noted in 2024. This adaptability and persistent re-emergence of their namesake malware, which is available in underground communities, distinguish ANDROMEDA SPIDER as a persistent threat in the cybercrime landscape.

Actores similares

andromeda-spideractor · 1Scattered Spideractor · 2Indrik Spideractor · 1doppel-spideractor · 1salty-spideractor · 1brain-spideractor · 1skeleton-spideractor · 1bamboo-spideractor · 1cobalt-spideractor · 1boson-spideractor · 1
Tecnicas MITRE
T1059.001, T1003.001, T1078, T1071.001
Tipo
apt
Pais origen
BY
Motivacion
-
Impacto
4
Actualizado
Wed, 01 Ju

Sectores objetivo (SOCRadar)

FinancePublic AdministrationInsuranceBanking