ShadowLink (7751a962-281e-420d-9d29-f83ae9985fd5)
A persistence and command and control method using Tor hidden services for remote access.[Microsoft Security Blog February 12 2025]
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
ShadowLink (7751a962-281e-420d-9d29-f83ae9985fd5) | Tidal Software | Seashell Blizzard Subgroup (785c4038-3c47-402c-93eb-9e4036a6366c) | Tidal Groups | 1 |