Bisonal

MITRE
Tipo Malware:
Other
Prima attivita:
Unknown
Ultima attivita:
Unknown
Dettagli:

[Bisonal](https://attack.mitre.org/software/S0268) is a remote access tool (RAT) that has been used by [Tonto Team](https://attack.mitre.org/groups/G0131) against public and private sector organizations in Russia, South Korea, and Japan since at least December 2010.(Citation: Unit 42 Bisonal July 2018)(Citation: Talos Bisonal Mar 2020)

Tecniche Associate (34)
ID ATT&CK Tattiche
T1005 Data from Local System -
T1012 Query Registry -
T1016 System Network Configuration Discovery -
T1027.001 Binary Padding -
T1027.002 Software Packing -
T1027.013 Encrypted/Encoded File -
T1036 Masquerading -
T1036.005 Match Legitimate Resource Name or Location -
T1041 Exfiltration Over C2 Channel -
T1057 Process Discovery -
T1059.003 Windows Command Shell -
T1059.005 Visual Basic -
T1070.004 File Deletion -
T1071.001 Web Protocols -
T1082 System Information Discovery -
Usato da Attori (1)
Metadata
ID: 299
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00