Break out the Box

Aliases: BOtB

First seen
2020-08-01 00:00:00
Malware type
cryptominer
Profile updated
2026-07-07 14:22:48

Targeted industries: technology-and-telecommunications energy-and-utilities

Context

This is a pentesting tool and according to the author, "BOtB is a container analysis and exploitation tool designed to be used by pentesters and engineers while also being CI/CD friendly with common CI/CD technologies.". It has been observed being used by TeamTNT in their activities for spreading crypto-mining malware.

Detection coverage

  • 1 YARA rules

Detection rules

  • DITEKSHEN_INDICATOR_TOOL_PET_Botb (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Elf.Botb (report)
  • github.com — Botb (report)

External references