Tuesday, August 18, 2015

APT:Regin

Regin
STATUS:Active
TYPE:Complex cyberattack platform, Trojan, Rootkit
DISCOVERY:spring of 2012
TARGETED PLATFORMS:Windows
FIRST KNOWN SAMPLE:2003
NUMBER OF TARGETS:11-100

Top Targeted countries:
Algeria, Afghanistan, Belgium, Brazil, Fiji, Germany, Iran, India, Indonesia, Kiribati, Malaysia, Pakistan, Syria, Russia

Special Features:
Regin – the first cyber-attack platform known to penetrate and monitor GSM networks in addition to other “standard” spying tasks.
One particular Regin module is capable of monitoring GSM base station controllers, collecting data about GSM cells and the network infrastructure.
The Regin platform uses an incredibly complex communication method between infected networks and command and control servers, allowing remote control and data transmission by stealth.
Specific Regin targets include individuals involved in advanced mathematical/cryptographical research

TARGETS
Telecoms
Government entities
Multi-national political bodies
Financial institutions
Academia/Research
Specific individuals

No comments:

Operating system - Part 1:

 In our blog, we published several articles on OS concepts which mostly on the perspective for malware analysis/security research. In few in...