Malware & Tools · FoggyWeb
Type
malware
Techniques
21
Used By
1 groups
Platforms
Windows
Description
FoggyWeb is a passive and highly-targeted backdoor capable of remotely exfiltrating sensitive information from a compromised Active Directory Federated Services (AD FS) server. It has been used by APT29 since at least early April 2021.(Citation: MSTIC FoggyWeb September 2021)
Tactic Coverage
Used By (1 groups)
Techniques (21)