Malware
Tsundere
- First Reported
- Mar 4, 2026
- Latest Reported
- Mar 4, 2026
Reported Context (1)
- with 185.236.25[.]119:3001 using websockets. This IP is identified as high risk in Hunt due to login to Tsundere botnet panels on ports 80 and 3000. Hunt.io Maps Infrastructure Linked to Iranian-Aligned Threat Actors
Malware (3)
Threat Actors (10)
MITRE ATT&CK (11)
Vendors (8)
Products (5)
Tools (3)
Industries (8)
Countries (5)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.