NEW: Group Profiler — instant APT intel lookup. Try it →

← threatfilter.dev / all groups / TeamTNT

TeamTNT

Overview

TeamTNT is a threat group that has primarily targeted cloud and containerized environments. The group as been active since at least October 2019 and has mainly focused its efforts on leveraging cloud and container resources to deploy cryptocurrency miners in victim environments.

TTPs — 56 techniques across 14 tactics

Reconnaissance

Resource Development

Execution

Privilege Escalation

Credential Access

Lateral Movement

  • T1021.004 SSH

Collection

Command and Control

Impact

Tools & malware (4)

Peirates · MimiPenguin · LaZagne · Hildegard

Reporting (3)