AutoIt backdoor — Malware Profile

AutoIt backdoor is malware that has been used by the actors responsible for the MONSOON campaign. The actors frequently used it in weaponized .pps files exploiting CVE-2014-6352. This malware makes use of the legitimate scripting language for Windows GUI automation with the same name.

MITRE ATT&CK techniques (4)

Attributed threat actors

Exploited vulnerabilities

Read the full analysis on IntelFusions