TinyTurla — Malware Profile
TinyTurla is a backdoor that has been used by Turla against targets in the US, Germany, and Afghanistan since at least 2020.
MITRE ATT&CK techniques (14)
- T1005 Data from Local System
- T1008 Fallback Channels
- T1012 Query Registry
- T1027.011 Fileless Storage
- T1029 Scheduled Transfer
- T1036.004 Masquerade Task or Service
- T1036.005 Match Legitimate Resource Name or Location
- T1059.003 Windows Command Shell
- T1071.001 Web Protocols
- T1105 Ingress Tool Transfer
- T1106 Native API
- T1112 Modify Registry
- T1569.002 Service Execution
- T1573.002 Asymmetric Cryptography