SHADOW-WATER-063
MISP
Type:
Unknown
Unknown
Country:
BR
BR
First seen:
Unknown
Unknown
Details:
SHADOW-WATER-063 is a financially motivated threat actor attributed to the Banana RAT banking trojan, primarily targeting Brazilian financial accounts. Analysis of recovered artifacts, including a Python panel and PowerShell stagers, supports a moderate-confidence attribution assessment. The actor's infrastructure and endpoint telemetry indicate a focus on executing fraudulent transactions. Key evidentiary pillars establish their intent to exploit Brazilian financial systems.
References (1)
Metadata
| ID: | 1078 |
| Created: | 04/06/2026 04:00 |
| Updated: | 26/06/2026 16:00 |