Cobalt: tactics and tools update
ID: 77ec13c0-1a57-409a-86a4-1b08631b79e9
STIX ID: report--77ec13c0-1a57-409a-86a4-1b08631b79e9
Threat Score
84/100
Uploaded: 2026-08-14
Published Date: 2020-06-19
Last Modified Date: 2020-06-19
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
PT ESC analysis of the Cobalt group documents active targeted campaigns against financial institutions and details technical analysis of their tooling (CobInt, COM-DLL-Dropper, more_eggs), delivery methods (fake ECB phishing site, malicious VHD attachments, Excel 4.0 macros), advanced obfuscation/encryption and anti-analysis techniques, persistence and C2 mechanisms, and provides IoCs (domains, IPs, file hashes) and mapped MITRE TTPs for detection and mitigation.
