G0108 · 22 ATT&CK techniques · 0 correlated reports

Blue Mockingbird

Aliases: None listed

Blue Mockingbird is a cluster of observed activity involving Monero cryptocurrency-mining payloads in dynamic-link library (DLL) form on Windows systems. The earliest observed Blue Mockingbird tools were created in December 2019.

Open interactive actor investigation

ATT&CK techniques

Correlated CTI and IR reports

Continue the investigation