ThaiCERT    ETDA    MDES
Report
Search
Home > List all groups > List all tools > List all groups using tool SilkBean

Threat Group Cards: A Threat Actor Encyclopedia

Permanent link Tool: SilkBean

NamesSilkBean
CategoryMalware
TypeReconnaissance, Backdoor, Info stealer, Exfiltration, Downloader
Description(Lookout) A hallmark of SilkBean is the comprehensive RAT (remote access trojan) functionality that allows an attacker to execute over 70 different commands on an infected device. SilkBean is delivered via applications that possess malicious functionality, but mimic titles and icons that a target may want to install. The legitimate app with functionality the user expects is packaged within the malware and installed after SilkBean successfully infects a target device.
Information<https://www.lookout.com/documents/threat-reports/us/lookout-uyghur-malware-tr-us.pdf>
AlienVault OTX<https://otx.alienvault.com/browse/pulses?q=tag:SilkBean>

Last change to this tool card: 02 July 2020

Download this tool card in JSON format

All groups using tool SilkBean

ChangedNameCountryObserved

APT groups

XKe3chang, Vixen Panda, APT 15, GREF, Playful DragonChina2010-May 2020 

1 group listed (1 APT, 0 other, 0 unknown)

Thailand Computer Emergency Response Team (ThaiCERT)
Electronic Transactions Development Agency

Follow us on

Facebook Twitter

Report incidents

Telephone +66 (0)2-123-1234
E-mail report@thaicert.or.th
PGP Download PGP key