STRIPEDFLY
STRIPEDFLY
MALWARE
UNKNOWN
Threat IntelligenceMalwareMarch 20, 202515 min read

StripedFly: Threat Intelligence Profile

Stealthy cross-platform malware

Scroll

StripedFly (also known as StripedFly) is a malware active since 2017. Stealthy cross-platform malware. Key characteristics include: cross-platform (Win/Linux), crypto mining, EternalBlue propagation, TOR C2, 1M+ infections, APT-level sophistication.

Overview & Background

Stealthy cross-platform malware. First identified in 2017, this threat is attributed to Unknown (APT-level).

Threat Assessment

StripedFly remains an active threat. Organizations should implement detection rules and monitor for indicators associated with this malware.

Technical Analysis

StripedFly employs the following capabilities and techniques:

MITRE ATT&CK Mapping

TacticTechniqueUsage
Initial AccessT1566.001 Phishing AttachmentCommon delivery vector
ExecutionT1204.002 Malicious FileUser-triggered execution
PersistenceT1547.001 Registry Run KeysAutostart persistence
Defense EvasionT1027 Obfuscated FilesPayload obfuscation
C2T1071.001 Web ProtocolsHTTP/HTTPS C2

Detection & Defense

Defend Against StripedFly

Mjolnir Security provides detection and response capabilities against StripedFly and similar threats.

Threat DetectionIncident ResponseThreat HuntingMDR ServicesThreat Intelligence
  • Proactive Threat Hunting Hunt for StripedFly indicators and TTPs within your environment.
  • Threat Intelligence Monitor StripedFly campaigns and infrastructure changes.
  • 24/7 Incident Response Rapid containment and forensic investigation. Call +1 833 403 5875.
Written by: Mjolnir Security  |  Published: March 20, 2025