TinyNuke
Description
(Bitsight) Tinynuke, or Nukebot malware, is a trojan able to perform man in the browser attacks against modern web browsers and equipped with the most common features needed by a bank trojan (e.g. Webinjects, Socks proxy, VNC, Remote command execution). This malware was in the spotlight in 2017 after the complete bot source code was leaked in March by someone claiming to be the author of the malware.
Names
Name |
---|
TinyNuke |
NukeBot |
Nuclear Bot |
MicroBankingTrojan |
Xbot |
Category
Malware
Type
- Reconnaissance
- Banking trojan
- Backdoor
- Credential stealer
- Tunneling
- Botnet
Information
- https://www.bitsight.com/blog/break-out-of-the-tinynuke-botnet
- https://www.netscout.com/blog/asert/dismantling-nuclear-bot
- https://krebsonsecurity.com/tag/nuclear-bot/
- https://securelist.com/the-nukebot-banking-trojan-from-rough-drafts-to-real-threats/78957/
- https://securityintelligence.com/the-nukebot-trojan-a-bruised-ego-and-a-surprising-source-code-leak/
- https://www.proofpoint.com/us/blog/threat-insight/tinynuke-banking-malware-targets-french-entities
Malpedia
Alienvault Otx
Other Information
Uuid
e8441890-a53f-4eb0-8cf9-4bfbd68ab527
Last Card Change
2021-12-27