SUGARUSH
S1049 · Windows
SUGARUSH is a small custom backdoor that can establish a reverse shell over TCP to a hard coded C2 address. SUGARUSH was first identified during analysis of UNC3890's C0010 campaign targeting Israeli companies, which began in late 2020.
ATT&CK S1049
Sigma rules0
YARA rules0
Live IOCs0