Sword

First seen
2021-06-10 00:00:00
Malware type
trojan
Family
Malware family
Profile updated
2026-07-07 14:46:53

Targeted industries: defense-and-aerospace government-and-public-sector

Context

Sword is a sophisticated malware family known for its use in espionage campaigns targeting the defense and government sectors. It is characterized by its stealthy operation and capability to extract sensitive information.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Sword_Auto (yara-rule)

Reports & references

  • github.com — Appendix%20C%20(Digital)%20 %20The%20Malware%20Arsenal (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Sword (report)

External references