Curly Spider

Russian Federation

Details

CURLY SPIDER is an eCrime adversary who conducts intrusions targeting predominantly North America- and Western Europe-based entities across various sectors. They are associated with WANDERING SPIDER and highly likely play a role within the Black Basta Ransomware-as-a-Service (RaaS).  CURLY SPIDER has used two tactics for initial access: the first exploits the CitrixBleed vulnerability, tracked as ...

Community Identifiers

X2iR06g1VEP8dnT

Objective

  • ctVe5Pak1XhBMJq

Motivation

  • F9RtB70l

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.