Covicli

Aliases: Covically

Malware type
backdoor
Profile updated
2026-07-07 14:39:11

Targeted industries: government-and-public-sector technology-and-telecommunications financial-services

Context

Covicli is a modified SSLeay32 dynamic library designated as a backdoor. The dynamic library allows the attacker to communicate with the C2 over openSSL.

Reports & references

  • clearskysec.com — Operation Quicksand (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Covicli (report)

External references