G0048 · 7 ATT&CK techniques · 0 correlated reports

RTM

Aliases: None listed

RTM is a cybercriminal group that has been active since at least 2015 and is primarily interested in users of remote banking systems in Russia and neighboring countries. The group uses a Trojan by the same name (RTM).

Open interactive actor investigation

ATT&CK techniques

Correlated CTI and IR reports

Continue the investigation