Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 20:04:03 UTC Home > List all groups > List all tools > List all groups using tool DoubleZero Tool: DoubleZero Names DoubleZero FiberLake Category Malware Type Wiper Description (Talos) The Computer Emergency Response Team of Ukraine released an advisory on March 22, 2022 disclosing another wiper dubbed 'DoubleZero' targeting Ukrainian enterprises during Russia's invasion of the country. This wiper was detected as early as March 17, 2022. DoubleZero is yet another wiper discovered in addition to previously disclosed attacks we've seen in Ukraine over the past two months, such as 'CaddyWiper' 'HermeticWiper' and 'WhisperGate.' DoubleZero is a .NET-based implant that destroys files, registry keys and trees on the infected endpoint. Information Malpedia Last change to this tool card: 27 December 2022 Download this tool card in JSON format All groups using tool DoubleZero Changed Name Country Observed Unknown groups https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=52b5ac80-4227-4351-8032-52ea1a878d6e Page 1 of 2 _[ Interesting malware not linked to an actor yet ]_   1 group listed (0 APT, 0 other, 1 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=52b5ac80-4227-4351-8032-52ea1a878d6e https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=52b5ac80-4227-4351-8032-52ea1a878d6e Page 2 of 2