SoreFang

MITRE
Tipo Malware:
Other
Prima attivita:
Unknown
Ultima attivita:
Unknown
Dettagli:

[SoreFang](https://attack.mitre.org/software/S0516) is first stage downloader used by [APT29](https://attack.mitre.org/groups/G0016) for exfiltration and to load other malware.(Citation: NCSC APT29 July 2020)(Citation: CISA SoreFang July 2016)

Tecniche Associate (14)
ID ATT&CK Tattiche
T1016 System Network Configuration Discovery -
T1027 Obfuscated Files or Information -
T1053.005 Scheduled Task -
T1057 Process Discovery -
T1069.002 Domain Groups -
T1071.001 Web Protocols -
T1082 System Information Discovery -
T1083 File and Directory Discovery -
T1087.001 Local Account -
T1087.002 Domain Account -
T1105 Ingress Tool Transfer -
T1140 Deobfuscate/Decode Files or Information -
T1190 Exploit Public-Facing Application -
T1680 Local Storage Discovery -
Usato da Attori (1)
Metadata
ID: 623
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00