ZeroCleare
S1151 · Windows
ZeroCleare is a wiper malware that has been used in conjunction with the RawDisk driver since at least 2019 by suspected Iran-nexus threat actors including activity targeting the energy and industrial sectors in the Middle East and political targets in Albania.
ATT&CK S1151
Sigma rules0
YARA rules0
Live IOCs0