logo

Dridex Malware

ID: 9706578b-b38d-519d-aa08-0bdeb321d39f

STIX ID: report--9706578b-b38d-519d-aa08-0bdeb321d39f

Feed Name: CISA Cybersecurity Advisories

Threat Score
75/100

Date Published: 2022-11-17

Date Updated: 2026-04-19

Author: CISA

...
...

This Treasury/CISA alert summarizes active Dridex banking-trojan campaigns targeting the financial sector, describing distribution vectors (phishing with macro-enabled attachments, cloud/FTP-hosted payloads, and exploitation of CVE-2017-0199), technical capabilities (browser/API injection, credential theft, P2P exfiltration), links to ransomware activity (BitPaymer/Locky), attribution to criminal groups (Evil Corp/TA505), a list of IOCs (email addresses and IPs), and recommended mitigations for institutions and users.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.