PowerDuke
S0139 · Windows
PowerDuke is a backdoor that was used by APT29 in 2016. It has primarily been delivered through Microsoft Word or Excel attachments containing malicious macros.
ATT&CK S0139
Sigma rules0
YARA rules0
Live IOCs0