SYMBOL | COMMON_NAME | aka. SYNONYMS |
The Kasablanka group is a cyber-criminal organization that has specifically targeted Russia between September and December 2022, using various payloads delivered through phishing emails containing socially engineered lnk files, zip packages, and executables attached to virtual disk image files.
There are currently no families associated with this actor.
2023-03-14
⋅
Cisco Talos
⋅
Talos uncovers espionage campaigns targeting CIS countries, embassies and EU health care agency Poet RAT Loda Kasablanka YoroTrooper |
2022-11-17
⋅
Cisco Talos
⋅
Get a Loda This: LodaRAT meets new friends Loda Kasablanka |
2021-09-07
⋅
ESET Research
⋅
BladeHawk group: Android espionage against Kurdish ethnic group 888 RAT BladeHawk Kasablanka |