RIFLESPINE

MITRE
Malware Type:
Other
First seen:
Unknown
Last seen:
Unknown
Details:

[RIFLESPINE](https://attack.mitre.org/software/S1222) is a cross-platform backdoor that leverages Google Drive for file transfer and command execution.(Citation: Google Cloud Mandiant UNC3886 2024)

Associated Techniques (10)
ID ATT&CK Tactics
T1059.004 Unix Shell -
T1071.001 Web Protocols -
T1074.001 Local Data Staging -
T1082 System Information Discovery -
T1102.002 Bidirectional Communication -
T1105 Ingress Tool Transfer -
T1140 Deobfuscate/Decode Files or Information -
T1543.002 Systemd Service -
T1567.002 Exfiltration to Cloud Storage -
T1573.001 Symmetric Cryptography -
Used by Actors (1)
Metadata
ID: 572
Created: 13/01/2026 17:48
Updated: 20/04/2026 16:00