Ghoul

  • First known sample

    2015
  • Discovery

    2016
  • Number of targets

    100-1000
  • Current status

    Inactive since 2017
  • Type

    Cyberespionage toolkit
  • Targeted platforms

    Android , Windows
  • TOP targeted countries

    Egypt , India , Pakistan , Spain , United Arab Emirates
  • The way of propagation

    Social engineering
  • Purpose/Functions

    Cyberespionage
  • Special features
    Please find more information here.
  • Targets

    Critical infrastructure engineering firms , Engineering
  • Description

    An APT operation in June 2016 that distributed malware capable of capturing all of the victim’s data, including passwords, keystrokes, and screenshots. The malware was spread through spearphishing emails sent to senior members and executives of targeted organizations, primarily those in the Middle East. Most victims are industrial targets.

    Additional information