ThaiCERT    ETDA    MDES
Report
Search
Home > List all groups > List all tools > List all groups using tool TFlower

Threat Group Cards: A Threat Actor Encyclopedia

Permanent link Tool: TFlower

NamesTFlower
CategoryMalware
TypeRansomware
Description(Sygnia) The TFlower ransomware campaign was covered by several technology news websites between September and November of 2019. However, since then very little information has been made public about the ransomware group or its operations.
Information<https://www.sygnia.co/mata-framework>
<https://cyber.gc.ca/en/alerts/tflower-ransomware-campaign>
<https://www.bleepingcomputer.com/news/security/tflower-ransomware-the-latest-attack-targeting-businesses/>
Malpedia<https://malpedia.caad.fkie.fraunhofer.de/details/win.tflower>

Last change to this tool card: 23 April 2021

Download this tool card in JSON format

Previous: TerraWiper
Next: THC Hydra

All groups using tool TFlower

ChangedNameCountryObserved

APT groups

 Lazarus Group, Hidden Cobra, Labyrinth ChollimaNorth Korea2007-Spring 2021X

1 group listed (1 APT, 0 other, 0 unknown)

Thailand Computer Emergency Response Team (ThaiCERT)
Electronic Transactions Development Agency

Follow us on

Facebook Twitter

Report incidents

Telephone +66 (0)2-123-1234
E-mail report@thaicert.or.th
PGP Download PGP key