DUSTPAN (78454d3f-fa12-5b6f-9390-6412064d7c8d)
DUSTPAN is an in-memory dropper written in C/C++ used by APT41 since 2021 that decrypts and executes an embedded payload.[Google Cloud APT41 2024][Google Cloud APT41 2022]
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
DUSTPAN (78454d3f-fa12-5b6f-9390-6412064d7c8d) | Tidal Software | APT41 (502223ee-8947-42f8-a532-a3b3da12b7d9) | Tidal Groups | 1 |