delta
- First seen
- 2020-05-01 00:00:00
- Malware type
- backdoor, trojan
- Family
- Malware family
- Last IoC activity
- 2026-07-22 00:36:36
- Profile updated
- 2026-07-07 13:57:28
Targeted industries: government-and-public-sector financial-services technology-and-telecommunications
Context
Delta is a sophisticated backdoor Trojan used by advanced persistent threat groups to target critical sectors globally. It provides attackers with remote access and data exfiltration capabilities, often going undetected for extended periods.
Detection coverage
- 3 YARA rules
Detection rules
- SIGNATURE_BASE_APT_CN_MAL_Reddelta_Shellcode_Loader_Oct20_1 (yara-rule)
- SIGNATURE_BASE_APT_CN_MAL_Reddelta_Shellcode_Loader_Oct20_2 (yara-rule)
- SIGNATURE_BASE_APT_CN_MAL_Reddelta_Shellcode_Loader_Oct20_3 (yara-rule)
Reports & references
- ransomlook.io — Delta (report)