DEADWOOD — Malware Profile

DEADWOOD is wiper malware written in C++ using Boost libraries. DEADWOOD was first observed in an unattributed wiping event in Saudi Arabia in 2019, and has since been incorporated into Agrius operations.

MITRE ATT&CK techniques (10)

Attributed threat actors

Read the full analysis on IntelFusions