Small Sieve
S1035 · Windows
Small Sieve is a Telegram Bot API-based Python backdoor that has been distributed using a Nullsoft Scriptable Install System (NSIS) Installer.
it has been used by MuddyWater since at least January 2022. Security researchers have also noted Small Sieve's use by UNC3313, which may be associated with MuddyWater.
ATT&CK S1035
1 actors documented
Sigma rules0
YARA rules0
Live IOCs0