SprySOCKS
- First seen
- 2023-05-15 00:00:00
- Malware type
- rat
- Last IoC activity
- 2026-07-06 12:56:38
- Profile updated
- 2026-07-07 14:30:20
Targeted industries: government-and-public-sector technology-and-telecommunications
Context
SprySOCKS is a remote access trojan used by threat actors for surveillance and data exfiltration, particularly targeting government and telecommunications sectors. It is known for its stealthy operation and versatile communication capabilities, allowing attackers to maintain persistent access.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Elf.Spry Socks (report)
- Trend Micro — Earth Lusca Employs New Linux Backdoor (report)