TurlaRPC

First seen
2021-05-11 00:00:00
Malware type
rat
Profile updated
2026-07-07 12:38:17

Targeted industries: government-and-public-sector defense-and-aerospace

Targeted regions: country_code:ru country_code:us country_code:de country_code:fr

Context

TurlaRPC is a remote access tool linked to the Turla APT group, known for cyber espionage targeting governmental and military organizations in various countries. It features capabilities for data exfiltration and persistent access.

Reports & references

  • pwc.co.uk — Pwc Cyber Threats 2020 A Year In Retrospect (report)
  • ESET — Turla Powershell Usage (report)
  • cocomelonc.github.io — Malware Pers 11 (report)
  • Palo Alto Unit 42 — Ironnetinjector (report)
  • cocomelonc.github.io — Malware Pers 3 (report)
  • cocomelonc.github.io — Malware Pers 7 (report)
  • accenture.com — Turla Belugasturgeon Compromises Government Entity (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Turla Rpc (report)

External references