Description
[Cannon](https://attack.mitre.org/software/S0351) is a Trojan with variants written in C# and Delphi. It was first observed in April 2018. (Citation: Unit42 Cannon Nov 2018)(Citation: Unit42 Sofacy Dec 2018)
External References
Techniques Used by This Malware
- T1033 — System Owner/User Discovery
- T1041 — Exfiltration Over C2 Channel
- T1057 — Process Discovery
- T1071.003 — Mail Protocols
- T1082 — System Information Discovery
- T1083 — File and Directory Discovery
- T1105 — Ingress Tool Transfer
- T1113 — Screen Capture
- T1124 — System Time Discovery
- T1547.004 — Winlogon Helper DLL