MAILSLOT
Description
(Mandiant) In one instance, FIN13 deployed a backdoor called MAILSLOT, which communicates over SMTP/POP over SSL, sending and receiving emails to and from a configured attacker-controlled email account for its command and control. MAILSLOT makes FIN13 a rare case of a threat actor who has used email communications for C2.
Names
Name |
---|
MAILSLOT |
Category
Malware
Type
- Backdoor
Information
Other Information
Uuid
54b14ce8-f706-41fc-bd4a-fd7174a4366a
Last Card Change
2021-12-26