Skip to content

Incidents attributed to:

RAZOR TIGER

An actor mainly targeting Pakistan military targets, active since at least 2012.

An actor mainly targeting Pakistan military targets, active since at least 2012. We have low confidence that this malware might be authored by an Indian company. To spread the malware, they use unique implementations to leverage the exploits of known vulnerabilities (such as CVE-2017-11882) and later deploy a Powershell payload in the final stages.

Also known as

SideWinder, Rattlesnake, APT-C-17, T-APT-04.

References


Actor metadata imported from Malpedia (Fraunhofer FKIE).