🇲🇽

Greedy Sponge

APT Group 1 zero-day CVE

Details

Origin 🇲🇽 MX
Last Updated 22 Jul 2025

MITRE ATT&CK 28

T1027 - Obfuscated Files or Information T1027.015 - Obfuscated Files or Information Compression T1041 - Exfiltration Over C Channel T1056 - Input Capture T1056.001 - Input Capture Keylogging T1059 - Command and Scripting Interpreter T1059.005 - Command and Scripting Interpreter PowerShell T1070 - Indicator Removal on Host T1070.004 - File Deletion T1071 - Application Layer Protocol T1071.001 - Application Layer Protocol Web Protocols T1105 - Ingress Tool Transfer T1113 - Screen Capture T1132 - Data Encoding T1132.001 - Data Encoding Standard Encoding T1140 - Deobfuscate Decode Files or Information T1204 - User Execution T1204.002 - User Execution Malicious File T1218 - Signed Binary Proxy Execution T1218.003 - CMSTP T1218.007 - Msiexec T1547 - Boot or Logon Autostart Execution T1547.001 - Registry Run Keys / Startup Folder T1548 - Abuse Elevation Control Mechanism T1548.002 - Abuse Elevation Control Mechanism Bypass User Account Control T1555 - Credentials from Password Stores T1591 - Gather Victim Org Information T1591.001 - Determine Physical Locations

Related Zero-Days 1