HotCroissant (a00e7fcc-b4e8-4f64-83d2-f9db64f0f3fe)
HotCroissant is a remote access trojan (RAT) attributed by U.S. government entities to malicious North Korean government cyber activity, tracked collectively as HIDDEN COBRA.[US-CERT HOTCROISSANT February 2020] HotCroissant shares numerous code similarities with Rifdoor.[Carbon Black HotCroissant April 2020]
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
HotCroissant (a00e7fcc-b4e8-4f64-83d2-f9db64f0f3fe) | Tidal Software | Lazarus Group (0bc66e95-de93-4de7-b415-4041b7191f08) | Tidal Groups | 1 |