Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 18:41:42 UTC Home > List all groups > List all tools > List all groups using tool TINYTYPHON Tool: TINYTYPHON Names TINYTYPHON Category Malware Type Backdoor Description TINYTYPHON is a backdoor that has been used by the actors responsible for the MONSOON campaign. The majority of its code was reportedly taken from the MyDoom worm. Information MITRE ATT&CK Malpedia AlienVault OTX Last change to this tool card: 23 April 2020 Download this tool card in JSON format All groups using tool TINYTYPHON Changed Name Country Observed APT groups Operation HangOver, Monsoon, Viceroy Tiger 2010-Jan 2020 Patchwork, Dropping Elephant 2013-Jun 2025 2 groups listed (2 APT, 0 other, 0 unknown) https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=05e9fde6-0d47-42c4-a579-d3c5c2e3a87d Page 1 of 2 Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=05e9fde6-0d47-42c4-a579-d3c5c2e3a87d https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=05e9fde6-0d47-42c4-a579-d3c5c2e3a87d Page 2 of 2 Operation Patchwork, HangOver, Dropping Monsoon, Viceroy Elephant Tiger 2010-Jan 2013-Jun 2020 2025 2 groups listed (2 APT, 0 other, 0 unknown) Page 1 of 2