Tsundere
Aliases: DinDoor
- First seen
- 2023-04-15 00:00:00
- Malware type
- backdoor
- Last IoC activity
- 2026-07-21 20:25:04
- Profile updated
- 2026-07-07 13:22:53
Targeted industries: government-and-public-sector technology-and-telecommunications
Targeted regions: country_code:jp country_code:us
Context
Tsundere, also known as DinDoor, is a backdoor malware primarily used for cyber espionage. It targets government and technology sectors, enabling remote unauthorized access to infected systems.
Reports & references
- security.com — Iran Cyber Threat Activity Us (report)
- research.checkpoint.com — Iranian Mois Actors The Cyber Crime Connection (report)
- malpedia.caad.fkie.fraunhofer.de — Js.Tsundere (report)
- Kaspersky — 117979 (report)
- ctrlaltintel.com — Muddywater (report)