Sykipot — Malware Profile
Sykipot is malware that has been used in spearphishing campaigns since approximately 2007 against victims primarily in the US. One variant of Sykipot hijacks smart cards on victims. The group using this malware has also been referred to as Sykipot.
MITRE ATT&CK techniques (11)
- T1007 System Service Discovery
- T1016 System Network Configuration Discovery
- T1018 Remote System Discovery
- T1049 System Network Connections Discovery
- T1055.001 Dynamic-link Library Injection
- T1056.001 Keylogging
- T1057 Process Discovery
- T1087.002 Domain Account
- T1111 Multi-Factor Authentication Interception
- T1547.001 Registry Run Keys / Startup Folder
- T1573.002 Asymmetric Cryptography