NEW: Group Profiler — instant APT intel lookup. Try it →

← threatfilter.dev / all groups / DarkHydrus

DarkHydrus

Overview

DarkHydrus is a threat group that has targeted government agencies and educational institutions in the Middle East since at least 2016. The group heavily leverages open-source tools and custom payloads for carrying out attacks.

TTPs — 7 techniques across 5 tactics

Resource Development

Initial Access

Execution

Stealth

Credential Access

Tools & malware (3)

Mimikatz · RogueRobin · Cobalt Strike

Reporting (2)