Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 19:23:58 UTC Home > List all groups > List all tools > List all groups using tool TinyTurla Tool: TinyTurla Names TinyTurla Category Malware Type Backdoor Description (Talos) Cisco Talos found a previously undiscovered backdoor from the Turla APT that we are seeing in the wild. This simple backdoor is likely used as a second-chance backdoor to maintain access to the system, even if the primary malware is removed. It could also be used as a second-stage dropper to infect the system with additional malware. Information MITRE ATT&CK Malpedia Last change to this tool card: 30 December 2022 Download this tool card in JSON format All groups using tool TinyTurla Changed Name Country Observed APT groups Turla, Waterbug, Venomous Bear 1996-2024 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=d4ad1cf1-4576-45f8-971a-577fd65a4c5a https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=d4ad1cf1-4576-45f8-971a-577fd65a4c5a Page 1 of 1