top of page

DeftTorero TTPs in 2019–2021

The tactics, techniques and procedures of the DeftTorero cyber-attack developed in the Middle East.

MALWARE FAMILIES: Meterpreter, Caterpillar WebShell - S0572, ASPXSpy - S0073, Explosive - S0569

ATT&CK IDS: T1505 - Server Software Component, T1490 - Inhibit System Recovery, T1036 - Masquerading, T1021 - Remote Services, T1003 - OS Credential Dumping, T1046 - Network Service Scanning, T1059 - Command and Scripting Interpreter

Read More:

bottom of page