SprySOCKS

First seen
2023-05-15 00:00:00
Malware type
rat
Last IoC activity
2026-07-06 12:56:38
Profile updated
2026-07-07 14:30:20

Targeted industries: government-and-public-sector technology-and-telecommunications

Context

SprySOCKS is a remote access trojan used by threat actors for surveillance and data exfiltration, particularly targeting government and telecommunications sectors. It is known for its stealthy operation and versatile communication capabilities, allowing attackers to maintain persistent access.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Elf.Spry Socks (report)
  • Trend Micro — Earth Lusca Employs New Linux Backdoor (report)

External references