Storm-2603

Also known as Gold Salem
Reports
5
First seen
Dec 3
Last seen
Jun 22
Motivation
financial, financial, espionage

Targeting

Sectors
other ×3

Top ATT&CK techniques

T1486 Data Encrypted for Impact ×5T1005 Data from Local System ×3T1078 Valid Accounts ×3T1110 Brute Force ×3T1598 Phishing for Information ×3T1021.001 Remote Services: RDP ×3T1566 Phishing ×3T1190 Exploit Public-Facing Application ×2T1219 Remote Access Software ×2T1021 Remote Services ×2T1041 Exfiltration Over C2 Channel ×2T1136 Create Account ×2

Indicators

filename ×11cve ×5domain ×3ip_v4 ×3hash_sha256 ×2url ×2

Indicator values are available on Pro and via the API.

Associated CVEs

Recent reports

This page shows data on a 7-day delay. Free accounts get the full delayed feed; real-time reports, indicators, and the API start at $29/mo.