balletspistol
- First seen
- 2021-06-15 00:00:00
- Malware type
- trojan, backdoor
- Profile updated
- 2026-07-07 13:55:02
Targeted industries: government-and-public-sector energy-and-utilities financial-services
Context
Balletspistol is a sophisticated Trojan that provides attackers with unauthorized remote access to affected systems. It is primarily used for data exfiltration and can establish a command and control channel to execute additional payloads or exfiltrate sensitive information.
Reports & references
- ransomlook.io — Balletspistol (report)
- tinextacyber.com — Dissecting A Python Ransomware Distributed Through Github Repositories 1 (report)