Tool
Automim
- First Reported
- Jun 24, 2026
- Latest Reported
- Jun 24, 2026
Reported Context (1)
- research. The attacker authenticated using valid credentials originating from this IP, then deployed an Automim credential-harvesting toolkit including Mimikatz, LaZagne, and multiple NirSoft tools. Persistence was Hunt.io Maps 3,923 Potentially Malicious Infrastructure Endpoints Across Eastern Europe
CVE (4)
Malware (13)
People (4)
Threat Actors (9)
MITRE ATT&CK (7)
Vendors (26)
Products (11)
Tools (8)
Industries (3)
Countries (10)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.