Tonnerre
- First seen
- 2020-05-15 00:00:00
- Malware type
- rat
- Family
- Malware family
- Last IoC activity
- 2026-07-01 19:55:51
- Profile updated
- 2026-07-07 15:07:05
Targeted industries: government-and-public-sector financial-services
Targeted regions: country_code:fr country_code:be
Context
Tonnerre is a remote access trojan (RAT) primarily targeting entities in France and Belgium. It has been associated with cyber espionage campaigns focusing on government and financial sectors.
Reports & references
- download.bitdefender.com — Bitdefender Whitepaper Iranian Apt Makes A Comeback With Thunder And Lightning Backdoor And Espionage Combo (report)
- safebreach.com — Prince Of Persia A Decade Of An Iranian Nation State Apt Campaign Activity (report)
- research.checkpoint.com — After Lightning Comes Thunder (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Tonnerre (report)