SHIPSHAPE (3db0b464-ec5d-4cdd-86c2-62eac9c8acd6)
SHIPSHAPE is malware developed by APT30 that allows propagation and exfiltration of data over removable devices. APT30 may use this capability to exfiltrate data across air-gaps. [FireEye APT30]
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
APT30 (be45ff95-6c74-4000-bc39-63044673d82f) | Tidal Groups | SHIPSHAPE (3db0b464-ec5d-4cdd-86c2-62eac9c8acd6) | Tidal Software | 1 |