🇵🇰SideCopy
🇵🇰 SideCopy is a tracked threat actor in the Clankerusecase corpus. PK-aligned. Primary motivation: Unknown. We map 14 detection use cases to this actor across 16 MITRE ATT&CK techniques, with 0 threat-intel articles citing them.
14Use cases
0Articles
16Techniques
0IOCs
About this actor (MITRE)
[SideCopy](https://attack.mitre.org/groups/G1008) is a Pakistani threat group that has primarily targeted South Asian countries, including Indian and Afghani government personnel, since at least 2019. [SideCopy](https://attack.mitre.org/groups/G1008)'s name comes from its infection chain that tries to mimic that of [Sidewinder](https://attack.mitre.org/groups/G0121), a suspected Indian threat group.(Citation: MalwareBytes SideCopy Dec 2021)
Known aliases
SideCopy
Top techniques
All other tracked techniques
T1082 · System Information DiscoveryT1105 · Ingress Tool TransferT1106 · Native APIT1204.002 · Malicious FileT1218.005 · MshtaT1518 · Software DiscoveryT1518.001 · Security Software DiscoveryT1566.001 · Spearphishing AttachmentT1574.001 · DLLT1584.001 · DomainsT1598.002 · Spearphishing AttachmentT1608.001 · Upload MalwareT1614 · System Location Discovery