TINYTYPHON

By GoldSparrow in Backdoors

The TINYTYPHON malware is a threat developed by the Patchwork hacking group. According to malware researchers, the Patchwork APT (Advanced Persistent Threat) is a hacking group that holds pro-Indian beliefs and targets individuals or organizations, which would be of interest to the Indian government. This hacking group has been around since 2015 and has been upgrading its arsenal of tools gradually. The TINYTYPHON threat is a backdoor Trojan that is used by the Patchwork APT regularly.

The TINYTYPHON backdoor Trojan is very small in size, which explains its fairly limited features. The main purpose of the TINYTYPHON malware is to collect data from the targeted system and plant additional harmful payloads on it. To locate the files that would be of interest to the attackers, the TINYTYPHON Trojan scans the data present on the system and seeks specific filenames or filetypes. It is likely that the attackers are looking for confidential documents, spreadsheets, archives and databases containing sensitive data, etc. Once the TINYTYPHON backdoor Trojan detects a file that matches its criteria, the file will be copied and exfiltrated to the C&C (Command & Control) server of the attackers.

Despite its sufficient capabilities, the TINYTYPHON malware is not able to avoid sandbox environments or detection by anti-virus solutions. This is why users who have protected their systems with reputable anti-malware applications need not worry about the TINYTYPHON backdoor Trojan.

Trending

Most Viewed

Loading...