SMOKY SPIDER
0 incidentes
0 paises
0 sectores
apt RU Ultimo: -
SMOKY SPIDER is a financially motivated cybercrime group that emerged in 2011, primarily known for developing and operating Smoke Loader, a modular malware downloader and distribution service. The group is assessed with high confidence to be of Russian origin, focusing on data exfiltration and ransomware deployment. Their unique characteristic lies in pioneering the use of their proprietary Smoke Loader malware as a flexible platform for delivering various secondary payloads, establishing it as a significant component in the cybercrime ecosystem for initial access and distribution. This group has increasingly adopted double extortion tactics in their ransomware operations.
Sectores objetivo (SOCRadar)
Information ServicesFinanceHealthCare & Social AssistanceAir TransportationSpace & DefenseRetail