ToddyCat — APT Profile
ToddyCat is a sophisticated threat group that has been active since at least 2020 using custom loaders and malware in multi-stage infection chains against government and military targets across Europe and Asia.Description reproduced from MITRE ATT&CK. © The MITRE Corporation, reproduced and distributed with permission.
Also tracked as
Websiic
IntelFusions coverage (1)
- ToddyCat hackers steal corporate Gmail access with a stealthy new tool 2026-06-30 · Nation-State
Tools & malware
- China Chopper Web Shell
- Cobalt Strike Adversary Simulation
- LoFiSe Backdoor
- Net Network Reconnaissance
- netstat Network Reconnaissance
- Ninja Backdoor
- Pcexter Backdoor
- Ping Network Reconnaissance
- Samurai Backdoor
Vendor research
- APT ToddyCat Kaspersky
- ToddyCat: Keep calm and check logs Kaspersky