ATT&CKReferencesAquino RARSTONE

Aquino RARSTONE

Aquino, M. (2013, June 13). RARSTONE Found In Targeted Attacks. Retrieved December 17, 2015.

Open the source

Techniques0

Not cited by any technique.

Groups0

None recorded.

Software1

Campaigns0

None recorded.

Procedure examples2

TechniqueUsed byProcedure example
T1095
Non-Application Layer Protocol
MalwareRARSTONE

RARSTONE uses SSL to encrypt its communication with its C2 server.

T1105
Ingress Tool Transfer
MalwareRARSTONE

RARSTONE downloads its backdoor component from a C2 server and loads it directly into memory.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.