Curly Spider

Russian Federation

Details

CURLY SPIDER is an eCrime adversary who conducts intrusions targeting predominantly North America- and Western Europe-based entities across various sectors. They are associated with WANDERING SPIDER and highly likely play a role within the Black Basta Ransomware-as-a-Service (RaaS).  CURLY SPIDER has used two tactics for initial access: the first exploits the CitrixBleed vulnerability, tracked as ...

Community Identifiers

e6NRb8olIw2Jp9Z

Objective

  • ME0xclKq2PvUhsp

Motivation

  • APewcM7q

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.