Vault Viper: High Stakes, Hidden Threats
ID: de68d4e5-7443-5764-b80f-b7dde9f1b5ef
STIX ID: report--de68d4e5-7443-5764-b80f-b7dde9f1b5ef
Feed Name: Infoblox Threat Intel Blog
### Executive Summary This report exposes 'Vault Viper' (Baoying Group / BBIN), a long-running criminal service provider that operates turnkey illegal online gambling infrastructure and distributes a modified 'Universe Browser' that embeds persistent, covert functionality (proxying, keylogging, DNS manipulation, SSH/SOCKS5 C2s) consistent with malware and info-stealing toolsets; the analysis includes technical reverse engineering, DNS-based discovery of thousands of related domains, indicators of compromise, and corporate and judicial records linking the infrastructure to organized crime networks such as Suncity.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
