SUPERNOVA

MITRE
Tipo Malware:
Other
Prima attivita:
Unknown
Ultima attivita:
Unknown
Dettagli:

[SUPERNOVA](https://attack.mitre.org/software/S0578) is an in-memory web shell written in .NET C#. It was discovered in November 2020 during the investigation of [APT29](https://attack.mitre.org/groups/G0016)'s SolarWinds cyber operation but determined to be unrelated. Subsequent analysis suggests [SUPERNOVA](https://attack.mitre.org/software/S0578) may have been used by the China-based threat group SPIRAL.(Citation: Guidepoint SUPERNOVA Dec 2020)(Citation: Unit42 SUPERNOVA Dec 2020)(Citation: SolarWinds Advisory Dec 2020)(Citation: CISA Supernova Jan 2021)(Citation: Microsoft Analyzing Solorigate Dec 2020)

Tecniche Associate (5)
ID ATT&CK Tattiche
T1027.013 Encrypted/Encoded File -
T1036.005 Match Legitimate Resource Name or Location -
T1071.001 Web Protocols -
T1203 Exploitation for Client Execution -
T1505.003 Web Shell -
Metadata
ID: 498
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00