Loading the current evidence view. Navigation and account controls remain available.
Threat actors
Loading the current evidence view. Navigation and account controls remain available.
7
techniques
2
software
9,452
corpus matches
profile
The White Company is a likely state-sponsored threat actor with advanced capabilities. From 2017 through 2018, the group led an espionage campaign called Operation Shaheen targeting government and military organizations in Pakistan.
techniques
7 attributed · most-instrumented first
software
2 malware & tools attributed
NETWIRE
S0198
Revenge RAT
S0379
read this carefully
9,452 corpus matches is not attribution
That count is indicators which exhibit techniques The White Company is known to use. Many unrelated operators use the same techniques. Treat it as a shared-technique signal for hunting, never as first-party attribution to this group.
indicators exhibiting these techniques
Top by severity: each resolves to its own verdict.
stealth
showing 30 of 9,452