Dipsind

MITRE ATT&CK: S0200 View on attack.mitre.org

Aliases: Dipsind

First seen
2015-09-01 00:00:00
Malware type
backdoor
Family
Malware family
Operating systems
windows
Profile updated
2026-07-07 13:22:40

Targeted industries: government-and-public-sector technology-and-telecommunications

Targeted regions: country_code:in country_code:pk country_code:bd

Context

Dipsind is a malware family of backdoors that appear to be used exclusively by PLATINUM.

Detection coverage

  • 135 Sigma rules

Malware & tools used

  • Ingress Tool Transfer (attack-pattern)
  • Symmetric Cryptography (attack-pattern)
  • Winlogon Helper DLL (attack-pattern)
  • Scheduled Transfer (attack-pattern)
  • Windows Command Shell (attack-pattern)
  • Standard Encoding (attack-pattern)
  • Web Protocols (attack-pattern)

Used by threat actors

Reports & references

  • Microsoft — Platinum%20Feature%20Article%20 %20Targeted%20Attacks%20In%20South%20And%20Southeast%20Asia%20April%202016 (report)
  • MITRE ATT&CK — S0200 (report)

External references