SDBbot (046bbd0c-bff5-46fc-9028-cbe46a9f8ec5)
SDBbot is a backdoor with installer and loader components that has been used by TA505 since at least 2019.[Proofpoint TA505 October 2019][IBM TA505 April 2020]
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
TA505 (b3220638-6682-4a4e-ab64-e7dc4202a3f1) | Tidal Groups | SDBbot (046bbd0c-bff5-46fc-9028-cbe46a9f8ec5) | Tidal Software | 1 |