ATT&CKReferencesNSA NCSC Turla OilRig

NSA NCSC Turla OilRig

NSA/NCSC. (2019, October 21). Cybersecurity Advisory: Turla Group Exploits Iranian APT To Expand Coverage Of Victims. Retrieved October 16, 2020.

Open the source

Techniques2

Groups0

None recorded.

Software0

None recorded.

Campaigns0

None recorded.

Procedure examples2

TechniqueUsed byProcedure example
T1584.003
Virtual Private Server
GroupTurla

Turla has used the VPS infrastructure of compromised Iranian threat actors.

T1588.001
Malware
GroupTurla

Turla has used malware obtained after compromising other threat actors, such as OilRig.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.