RotaJakiro — Malware Profile

RotaJakiro is a 64-bit Linux backdoor used by APT32. First seen in 2018, it uses a plugin architecture to extend capabilities. RotaJakiro can determine it's permission level and execute according to access type (`root` or `user`).

MITRE ATT&CK techniques (17)

Attributed threat actors

Read the full analysis on IntelFusions