delta

First seen
2020-05-01 00:00:00
Malware type
backdoor, trojan
Family
Malware family
Last IoC activity
2026-07-22 00:36:36
Profile updated
2026-07-07 13:57:28

Targeted industries: government-and-public-sector financial-services technology-and-telecommunications

Context

Delta is a sophisticated backdoor Trojan used by advanced persistent threat groups to target critical sectors globally. It provides attackers with remote access and data exfiltration capabilities, often going undetected for extended periods.

Detection coverage

  • 3 YARA rules

Detection rules

  • SIGNATURE_BASE_APT_CN_MAL_Reddelta_Shellcode_Loader_Oct20_1 (yara-rule)
  • SIGNATURE_BASE_APT_CN_MAL_Reddelta_Shellcode_Loader_Oct20_2 (yara-rule)
  • SIGNATURE_BASE_APT_CN_MAL_Reddelta_Shellcode_Loader_Oct20_3 (yara-rule)

Reports & references

  • ransomlook.io — Delta (report)

External references