Bloody Wolf Targets Kazakhstan with STRRAT Malware

Amber | Attack Report
Download PDF

The Bloody Wolf threat group has been targeting organizations in Kazakhstan since late 2023 using STRRAT malware, which is available for purchase on underground forums. They employ sophisticated phishing tactics, impersonating government agencies to deliver malicious JAR files. Once installed, STRRAT exfiltrates sensitive data and allows remote control of compromised systems. The use of legitimate web services like Pastebin helps the attackers evade detection.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox