POSHSPY — Malware Profile

POSHSPY is a backdoor that has been used by APT29 since at least 2015. It appears to be used as a secondary backdoor used if the actors lost access to their primary backdoors.

MITRE ATT&CK techniques (8)

Attributed threat actors

Read the full analysis on IntelFusions