AdFind — Malware Profile
AdFind is a free command-line query tool that can be used for gathering information from Active Directory.
MITRE ATT&CK techniques (5)
- T1016 System Network Configuration Discovery
- T1018 Remote System Discovery
- T1069.002 Domain Groups
- T1087.002 Domain Account
- T1482 Domain Trust Discovery
IntelFusions coverage
- Lazarus Group (APT38): North Korea's Most Prolific Cyber Threat Actor Targets Banks, Crypto, and Critical Infrastructure 2026-02-16
- Stately Taurus (Mustang Panda) Conducts Two-Year Southeast Asian Government Espionage Operation: Three-DLL ToneShell Variant, ShadowPad, and Continuous File Exfiltration via Dropbox 2026-02-16
Attributed threat actors
- Lotus Blossom
- Conti
- FIN7
- Play Ransomware
- BlackByte
- FIN6
- Akira
- Mustang Panda
- INC Ransom
- APT29
- APT10
- TA505
- Royal machine-inferred link
- LockBit machine-inferred link
- Nokoyawa machine-inferred link