VSingle
- Malware type
- backdoor
- Family
- Malware family
- Last IoC activity
- 2026-05-07 05:22:41
- Profile updated
- 2026-07-07 14:59:02
Targeted industries: government-and-public-sector
Targeted regions: country_code:vn
Context
VSingle is a backdoor malware used by threat actors for espionage purposes, primarily targeting government entities. It is known for its sophisticated capabilities and associations with cyber-espionage groups believed to be linked to China.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Vsingle_Auto (yara-rule)
Reports & references
- Broadcom/Symantec — Stonefly North Korea Espionage (report)
- Cisco Talos — Lazarus Three Rats (report)
- youtube.com — Watch (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Vsingle (report)
- blogs.jpcert.or.jp — Lazarus Malware3 (report)
- blogs.jpcert.or.jp — Vsingle (report)