BackdoorDiplomacy
Aliases: None listed
BackdoorDiplomacy is a cyber espionage threat group that has been active since at least 2017. BackdoorDiplomacy has targeted Ministries of Foreign Affairs and telecommunication companies in Africa, Europe, the Middle East, and Asia.
Open interactive actor investigation
ATT&CK techniques
T1027
Obfuscated Files or InformationT1505.003
Web ShellT1190
Exploit Public-Facing ApplicationT1588.002
ToolT1036.005
Match Legitimate Name or LocationT1055.001
Dynamic-link Library InjectionT1105
Ingress Tool TransferT1074.001
Local Data StagingT1046
Network Service DiscoveryT1049
System Network Connections DiscoveryT1120
Peripheral Device DiscoveryT1095
Non-Application Layer ProtocolT1574.001
DLL Search Order HijackingT1588.001
MalwareT1036.004
Masquerade Task or Service
Obfuscated Files or InformationT1505.003
Web ShellT1190
Exploit Public-Facing ApplicationT1588.002
ToolT1036.005
Match Legitimate Name or LocationT1055.001
Dynamic-link Library InjectionT1105
Ingress Tool TransferT1074.001
Local Data StagingT1046
Network Service DiscoveryT1049
System Network Connections DiscoveryT1120
Peripheral Device DiscoveryT1095
Non-Application Layer ProtocolT1574.001
DLL Search Order HijackingT1588.001
MalwareT1036.004
Masquerade Task or Service