UPSTYLE
S1164 · Network Devices, Linux
UPSTYLE is a Python-based backdoor associated with exploitation of Palo Alto firewalls using CVE-2024-3400 in early 2024. UPSTYLE has only been observed in relation to this exploitation activity, which involved attempted install on compromised devices by the threat actor UTA0218.
ATT&CK S1164
Sigma rules0
YARA rules0
Live IOCs0