Sepulcher

Malware type
rat
Family
Malware family
Profile updated
2026-07-07 12:56:05

Targeted industries: government-and-public-sector energy-and-utilities

Targeted regions: country_code:ua country_code:pl

Context

Sepulcher is a Remote Access Trojan (RAT) employed by threat actors to conduct espionage operations. It primarily targets government and energy sectors in Eastern Europe, especially Ukraine and Poland. The malware is known for providing remote access and control over compromised systems.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Sepulcher_Auto (yara-rule)

Reports & references

  • proofpoint.com — Ta413 Leverages New Friarfox Browser Extension Target Gmail Accounts Global (report)
  • proofpoint.com — Chinese Apt Ta413 Resumes Targeting Tibet Following Covid 19 Themed Economic (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Sepulcher (report)
  • enigmasoftware.fr — Logicielmalveillantsepulcher Supprimer (report)
  • threatpost.com — 158871 (report)
  • cyware.com — Chinese Apt Ta413 Found Distributing Sepulcher Malware 176A0969 (report)

External references