EVILNUM
S0568 · Windows
EVILNUM is fully capable backdoor that was first identified in 2018. EVILNUM is used by the APT group Evilnum which has the same name.
ATT&CK S0568
Sigma rules0
YARA rules0
Live IOCs0