The Turla Group is reportedly distributing the KOPILUWAK reconnaissance software and the QUIETCANARY backdoor to victims of ANDROMEDA malware in Ukraine. ANDROMEDA malware, spread through infected USB drives. KOPILUWAK is a JavaScript-based reconnaissance utility that has been been distributed to victims as a first-stage malicious email attachment. Following the initial execution and reconnaissance carried out using KOPILUWAK, a lightweight .NET backdoor called QUIETCANARY
Get through updates and upcoming events, and more directly in your inbox