ATT&CKReferencesRecorded Future Turla Infra 2020

Recorded Future Turla Infra 2020

Insikt Group. (2020, March 12). Swallowing the Snake’s Tail: Tracking Turla Infrastructure. Retrieved September 16, 2024.

Open the source

Techniques1

Groups0

None recorded.

Software0

None recorded.

Campaigns0

None recorded.

Procedure examples4

TechniqueUsed byProcedure example
T1584.004
Server
GroupTurla

Turla has used compromised servers as infrastructure.

T1584.006
Web Services
GroupTurla

Turla has frequently used compromised WordPress sites for C2 infrastructure.

T1587.001
Malware
GroupTurla

Turla has developed its own unique malware for use in operations.

T1588.001
Malware
GroupTurla

Turla has used malware obtained after compromising other threat actors, such as OilRig.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.