Ramsay
S0458 · Windows
Ramsay is an information stealing malware framework designed to collect and exfiltrate sensitive documents, including from air-gapped systems. Researchers have identified overlaps between Ramsay and the Darkhotel-associated Retro malware.
ATT&CK S0458
Sigma rules0
YARA rules0
Live IOCs0