logo

Move over, Cobalt Strike. Splinter’s the new post-exploit menace in town

ID: c12cfc65-25b6-58e4-9ee5-91026ccd5ecc

STIX ID: report--c12cfc65-25b6-58e4-9ee5-91026ccd5ecc

Feed Name: The Register (Security)

Threat Score
68/100

Date Published: 2024-09-23

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Unit 42 discovered Splinter, a Rust-written post-exploitation tool found in multiple customer environments that can execute Windows commands, perform remote process injection, upload/download files, collect cloud service account information, and self-destruct; the report includes a sample hash and C2 URL paths to aid detection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.