The Equation group is one of the most advanced threat actor that has been used in multiple computer network exploitation (CNE) operations since 2001. It is a highly developed cyber attack group that involves using of multiple malware platforms. This treat actor is called the Equation group because it is using trough their malware and operations a specific type of the encryption algorithm RC5 and obfuscation strategies. The recent modules besides cryptographic features use RC4, RC6, and AES.
The Equation group is using a multiple malware platforms such as: EquationDrug, DoubleFantasy, Equestre, TripleFantasy, GrayFish, Fanny, EquationLaser.EquationDrug is a very complicated attack platform that maintains a module plagin system and used on victims of the Equation group. Continue reading...