BlueBottle
0 incidentes
0 paises
0 sectores
apt Unknown Ultimo: -
Aliases: OPERA1ER, DESKTOP-GROUP o NXSMS, orientado a objetivos específicos
BlueBottle is a financially motivated cybercrime group known by multiple aliases including OPERA1ER, DESKTOP-GROUP, Common Raven, and NXSMS. The group was first observed in 2016 and primarily targets the financial sector, such as banks in French-speaking African nations and other countries globally, with the clear motivation of direct financial gain. BlueBottle differentiates itself through its consistent reliance on living off the land techniques, dual-use tools, and commodity malware rather than custom-developed solutions, while actively adapting its tactics to bypass security products and maintain long-term persistence within victim networks.
Sectores objetivo (SOCRadar)
FinanceTelecommunicationsBanking