Tropic Trooper’s Back: USBferry Attack Targets Air-gapped Environments
released on 2020-05-14 @ 02:09:16 PM
Tropic Trooper (aka KeyBoy) is a cyberespionage group known for perpetrating attacks against government institutions, military agencies, hospitals, and the banking industry. Recently, we discovered the Tropic Trooper group targeting Taiwanese and the Philippine military’s physically isolated environment using a USBferry attack (the name derived from a sample found in a related research).
USBferry has variants that perform different commands depending on specific targets; it can also
combine capabilities, improve its stealth in infected environments, and steal critical information through USB storage.