IndigoDrop

First seen
2018-05-20 00:00:00
Malware type
dropper
Profile updated
2026-07-07 14:20:56

Targeted industries: government-and-public-sector energy-and-utilities

Targeted regions: country_code:ir country_code:sa country_code:ae

Context

IndigoDrop is a piece of malware primarily used as a dropper to deploy additional payloads. It is known to target government and energy sectors, particularly in the Middle East. The malware has been associated with cyber espionage campaigns.

Reports & references

  • Cisco Talos — 2020 Year In Malware (report)
  • Cisco Talos — Indigodrop Maldocs Cobalt Strike (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Indigodrop (report)

External references