FORKBEARD

Description

(FireEye) We observed FORKBEARD dropping SHORTBENCH and Meterpreter in an April 2020 intrusion. FIN11 has used these Metasploit-related tools; however, we currently have inadequate evidence to attribute this intrusion to FIN11. SHORTBENCH and Meterpreter are used by a variety of actors.

Names

Name
FORKBEARD

Category

Malware

Type

  • Dropper

Other Information

Uuid

d5a15a63-303e-4c09-9757-c6b91856508c

Last Card Change

2020-10-20