PittyTiger is a threat group believed to operate out of China that uses multiple different types of malware to maintain command and control.[1][2]
Domain | ID | Name | Use | |
---|---|---|---|---|
Enterprise | T1588 | .002 | Obtain Capabilities: Tool |
PittyTiger has obtained and used tools such as Mimikatz and gsecdump.[1] |
Enterprise | T1078 | Valid Accounts |
PittyTiger attempts to obtain legitimate credentials during operations.[1] |