Tsundere

Aliases: DinDoor

First seen
2023-04-15 00:00:00
Malware type
backdoor
Last IoC activity
2026-07-21 20:25:04
Profile updated
2026-07-07 13:22:53

Targeted industries: government-and-public-sector technology-and-telecommunications

Targeted regions: country_code:jp country_code:us

Context

Tsundere, also known as DinDoor, is a backdoor malware primarily used for cyber espionage. It targets government and technology sectors, enabling remote unauthorized access to infected systems.

Reports & references

  • security.com — Iran Cyber Threat Activity Us (report)
  • research.checkpoint.com — Iranian Mois Actors The Cyber Crime Connection (report)
  • malpedia.caad.fkie.fraunhofer.de — Js.Tsundere (report)
  • Kaspersky — 117979 (report)
  • ctrlaltintel.com — Muddywater (report)

External references