NEW: Group Profiler — instant APT intel lookup. Try it →

← threatfilter.dev / all groups / SideCopy

SideCopy

G1008 Pakistan MITRE ATT&CK →

Overview

SideCopy is a Pakistani threat group that has primarily targeted South Asian countries, including Indian and Afghani government personnel, since at least 2019. SideCopy's name comes from its infection chain that tries to mimic that of Sidewinder, a suspected Indian threat group.

TTPs — 16 techniques across 7 tactics

Reconnaissance

Resource Development

Initial Access

Execution

Stealth

Command and Control

Tools & malware (2)

AuTo Stealer · Action RAT

Reporting (1)