Malware.View on attack.mitre.org
| Technique | Procedure example |
|---|---|
| T1082 System Information Discovery |
KARAE can collect system information. |
| T1102.002 Bidirectional Communication |
KARAE can use public cloud-based storage providers for command and control. |
| T1105 Ingress Tool Transfer |
KARAE can upload and download files, including second-stage malware. |
| T1189 Drive-by Compromise |
KARAE was distributed through torrent file-sharing websites to South Korean victims, using a YouTube video downloader application as a lure. |
None recorded.
Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.