Orangeworm

MISP
Tipo:
Unknown
Paese:
Unknown
Prima attivita:
Unknown
Dettagli:

[Orangeworm](https://attack.mitre.org/groups/G0071) is a group that has targeted organizations in the healthcare sector in the United States, Europe, and Asia since at least 2015, likely for the purpose of corporate espionage.(Citation: Symantec Orangeworm April 2018) Reverse engineering of [Kwampirs](https://attack.mitre.org/software/S0236), directly associated with [Orangeworm](https://attack.mitre.org/groups/G0071) activity, indicates significant functional and development overlaps with [Shamoon](https://attack.mitre.org/software/S0140).(Citation: Cylera Kwampirs 2022)

MITRE ATT&CK: View on MITRE
Tecniche Utilizzate (2)
ID ATT&CK Tattiche
T1021.002 SMB/Windows Admin Shares -
T1071.001 Web Protocols -
Metadata
ID: 163
Created: 13/01/2026 17:48
Updated: 21/04/2026 16:00