SilverTerrier

MITRE ATT&CK: G0083 View on attack.mitre.org

Aliases: SilverTerrier

First seen
2014-01-01 00:00:00
Origin
NG
Primary motivation
financial-gain
Sophistication
intermediate
Resource level
team
Actor type
criminal
Profile updated
2026-07-07 11:53:01

Targeted industries: education-and-nonprofits manufacturing technology-and-telecommunications

Context

SilverTerrier is a Nigerian threat group that has been seen active since 2014. SilverTerrier mainly targets organizations in high technology, higher education, and manufacturing.

Detection coverage

  • 7 YARA rules
  • 31 Sigma rules

Malware & tools used

  • Mail Protocols (attack-pattern)
  • Web Protocols (attack-pattern)
  • File Transfer Protocols (attack-pattern)
  • Financial Theft (attack-pattern)
  • NETWIRE (malware)
  • DarkComet (malware)
  • NanoCore (malware)
  • Lokibot (malware)
  • Agent Tesla (malware)

Reports & references

  • paloaltonetworks.com — Silverterrier Next Evolution In Nigerian Cybercrime (report)
  • MITRE ATT&CK — G0083 (report)
  • paloaltonetworks.com — Downloadresource (report)

External references