#Dolphin
Malware/Tool
2022-11-30 • Who’s swimming in South Korean waters? Meet ScarCruft’s Dolphin
Dolphin is a sophisticated espionage backdoor used by the ScarCruft APT group against selected targets after an initial compromise by less advanced malware. It monitors fixed and portable drives, collects and exfiltrates files of interest, logs keystrokes, captures screenshots, and steals browser credentials. Rather than using dedicated attacker infrastructure for all communications, Dolphin abuses Google Drive as its command-and-control channel, consistent with other ScarCruft tooling.
-
1
Tagged Reports
-
1
Unique Authors
-
1
Active Days
Tagged Reports
2022-11-30
ESET