SYMBOLCOMMON_NAMEaka. SYNONYMS

Sowbug  (Back to overview)

aka: G0054

Sowbug has been conducting highly targeted cyber attacks against organizations in South America and Southeast Asia and appears to be heavily focused on foreign policy institutions and diplomatic targets. Sowbug has been seen mounting classic espionage attacks by stealing documents from the organizations it infiltrates.


Associated Families
win.starloader win.felismus

References
2019-01-01MITREMITRE ATT&CK
Group description: Sowbug
Sowbug
2019-01-01Council on Foreign RelationsCyber Operations Tracker
Sowbug
Sowbug
2017-11-07SymantecSymantec Security Response
Sowbug: Cyber espionage group targets South American and Southeast Asian governments
Felismus StarLoader Sowbug

Credits: MISP Project