{"repo":"prodaft/malware-ioc","free":true,"listed":false,"github":"https://github.com/prodaft/malware-ioc","clone":"git clone https://github.com/prodaft/malware-ioc.git","description":"This repository contains indicators of compromise (IOCs) of our various investigations.","language":"Python","stars":320,"topics":["cybersecurity","ioc","malware-detection","malware-research","ransomware","threat-hunting","threat-intelligence","threatintel","ttp","apt"],"license":"MIT","category":"security-tools","readme_excerpt":"PRODAFT Threat Intelligence This repository contains indicators of compromise (IOCs) of our various investigations. Threat Actors Avatars Threat Actors Description Motivation ------- ---------------- -------------- ------------ ArcaneMantis Arcane Mantis (a.k.a. Vice Society, Rhysida) is a ransomware group that first appeared in the summer of 2021. Ransomware CrypticSilverfish Cryptic Silverfish, also known as Evil Corp, is a notorious Russian cybercriminal group active since at least 2007. Organized Crime DiabolicLadybug Diabolic Ladybug, also known as TA505, is a financially motivated cybercriminal group active since at least 2014, known for orchestrating large-scale malicious email campaigns to distribute various malware families. Financial Crime ElysianMantis Elysian Mantis, also known as Conti, was a ransomware group active from 2019 to 2022, known for operating a ransomware-as-a-service (RaaS) model.. Ransomware LARVA-140 LARVA-140, also known as Brunhilda, is the threat actor behind the Brunhilda DaaS operation, an Android malware dropper targeting banking apps, cryptocurrency wallets, and social media platforms in specific regions. Criminal Service LARVA-147 LARVA-147, also known as CryptoChameleon, UNK-12, or Perm, is a cybercriminal threat actor specializing in advanced phishing campaigns targeting cryptocurrency users and exchanges like Binance, Uphold, and Kraken. Criminal Service LARVA-15 LARVA-15, also known as Wazawaka and identified as Mikhail Pavlovich Matvee","default_branch":null,"files":null,"tree":[],"storefront":"/r/prodaft","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/prodaft/malware-ioc/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}