Malware
PteroSand
- First Reported
- Jun 25, 2026
- Latest Reported
- Jun 25, 2026
Reported Context (1)
- As in previous years, most campaigns used archive attachments or XHTML files employing HTML smuggling to deliver malicious HTA downloaders, which in turn fetched the VBScript downloader PteroSand and additional payloads. ESET Details Gamaredon’s 2025 Cyberespionage Tactics Against Ukraine
CVE (1)
Malware (12)
Threat Actors (5)
MITRE ATT&CK (19)
Vendors (11)
Products (1)
Tools (1)
Industries (2)
Countries (2)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.