TurlaRPC
- First seen
- 2021-05-11 00:00:00
- Malware type
- rat
- Profile updated
- 2026-07-07 12:38:17
Targeted industries: government-and-public-sector defense-and-aerospace
Targeted regions: country_code:ru country_code:us country_code:de country_code:fr
Context
TurlaRPC is a remote access tool linked to the Turla APT group, known for cyber espionage targeting governmental and military organizations in various countries. It features capabilities for data exfiltration and persistent access.
Reports & references
- pwc.co.uk — Pwc Cyber Threats 2020 A Year In Retrospect (report)
- ESET — Turla Powershell Usage (report)
- cocomelonc.github.io — Malware Pers 11 (report)
- Palo Alto Unit 42 — Ironnetinjector (report)
- cocomelonc.github.io — Malware Pers 3 (report)
- cocomelonc.github.io — Malware Pers 7 (report)
- accenture.com — Turla Belugasturgeon Compromises Government Entity (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Turla Rpc (report)