Break out the Box
Aliases: BOtB
- First seen
- 2020-08-01 00:00:00
- Malware type
- cryptominer
- Profile updated
- 2026-07-07 14:22:48
Targeted industries: technology-and-telecommunications energy-and-utilities
Context
This is a pentesting tool and according to the author, "BOtB is a container analysis and exploitation tool designed to be used by pentesters and engineers while also being CI/CD friendly with common CI/CD technologies.". It has been observed being used by TeamTNT in their activities for spreading crypto-mining malware.
Detection coverage
- 1 YARA rules
Detection rules
- DITEKSHEN_INDICATOR_TOOL_PET_Botb (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Elf.Botb (report)
- github.com — Botb (report)