Threat Landscape Dashboard

Assessing today's threats and the relationships between them

Operation Waterbug New Toolset

The threat actor behind the operation launched a series of attacks in the last 18 months against multiple sectors including government, IT, communications, and education. The operation uses a range of tools in the campaigns including a new backdoor labeled Neptun that targets Microsoft Exchange servers, a modified version of Meterpreter, custom loaders, and custom RPC backdoors. The targets are in multiple locations including South America, Europe, Asia, and the Middle East.
Name Modified Date Sources
Operation Waterbug New Toolset 2019-06-27