42
Techniques
8
Toolsets
3
CVEs Referenced
1
KEV Entries
CISA Known Exploited
About Storm-0501

Storm-0501 is a financially motivated cyber criminal group that uses commodity and open-source tools to conduct ransomware operations. Storm-0501 has been active since 2021 and has previously been affiliated with Sabbath Ransomware and other Ransomware-as-a-Service (RaaS) variants such as Hive, BlackCat, Hunters International, LockBit 3.0, and Embargo ransomware.

View MITRE record ↗

Techniques by Tactic (42)
Toolsets (8)
🐛
Malware · Linux, macOS, Windows
🐛
Embargo S1247
Malware · ESXi, Linux, Windows
🔧
Tool · Windows, Office Suite, Identity Provider
🔧
Impacket S0357
Tool · Linux, macOS, Windows
🔧
Net S0039
Tool · Windows
🔧
Nltest S0359
Tool · Windows
🔧
Rclone S1040
Tool · Linux, Windows, macOS
🔧
Tasklist S0057
Tool
CVEs Referenced (3 · 1 CISA KEV)
CVE-2014-7169View full details on NVDKEV
CVE-2016-6662View full details on NVD
CVE-2019-3610View full details on NVD
↑