Description
[Strider](https://attack.mitre.org/groups/G0041) is a threat group that has been active since at least 2011 and has targeted victims in Russia, China, Sweden, Belgium, Iran, and Rwanda.(Citation: Symantec Strider Blog)(Citation: Kaspersky ProjectSauron Blog)
Techniques Used (TTPs)
- T1090.001 — Internal Proxy (command-and-control)
- T1556.002 — Password Filter DLL (credential-access, defense-evasion, persistence)
- T1564.005 — Hidden File System (defense-evasion)
Total TTPs: 3
Malware & Tools
Malware: Remsec