Bootkitty

First seen
2023-01-15 00:00:00
Malware type
wiper
Family
Malware family
Last IoC activity
2026-06-26 09:56:05
Profile updated
2026-07-07 14:22:46

Targeted industries: government-and-public-sector energy-and-utilities transportation-and-logistics

Targeted regions: country_code:ua country_code:ru

Context

Bootkitty is a bootkit malware that has been employed in attacks against critical infrastructure sectors and leverages advanced techniques to maintain persistence and conduct destructive operations on targeted systems.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Elf.Bootkitty (report)
  • ESET — Bootkitty Analyzing First Uefi Bootkit Linux (report)

External references