Move over, Cobalt Strike. Splinter’s the new post-exploit menace in town
ID: c12cfc65-25b6-58e4-9ee5-91026ccd5ecc
STIX ID: report--c12cfc65-25b6-58e4-9ee5-91026ccd5ecc
Feed Name: The Register (Security)
Threat Score
Unit 42 discovered Splinter, a Rust-written post-exploitation tool found in multiple customer environments that can execute Windows commands, perform remote process injection, upload/download files, collect cloud service account information, and self-destruct; the report includes a sample hash and C2 URL paths to aid detection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
