Skip to content

Latest commit

 

History

History
37 lines (30 loc) · 961 Bytes

snake.md

File metadata and controls

37 lines (30 loc) · 961 Bytes
ID X0047
Aliases None
Platforms Windows
Year 2004
Associated ATT&CK Software None

Snake

The Snake malware is an information-stealing malware that is implemented in the .NET programming language. It has been in use since 2004 and is one of the most sophisticated cyber espionage tools designed and used by Russia's FSB for long-term intelligence collection. [1]

MBC Behaviors

Name Use
Discovery::SMTP Connection Discovery (B0014) Snake attempts to login to an attacker controlled SMTP server before sending information. [1]

References

[1] https://www.cybereason.com/blog/research/threat-analysis-report-snake-infostealer-malware