high_confidence

Juicy Mix

[Juicy Mix](https://attack.mitre.org/campaigns/C0044) was a campaign conducted by [OilRig](https://attack.mitre.org/groups/G0049) throughout 2022 that targeted Israeli organizations with the [Mango](https://attack.mitre.org/software/S1169) backdoor.(Citation: ESET OilRig Campaigns Sep 2023)

Start date
1 January 2022
End date
1 December 2022
Techniques
14

Attributed actors

Techniques (14)

collection1
T1074.001Local Data Staging
command-and-control2
T1132.001Standard Encoding
T1071.001Web Protocols
credential-access2
T1555.003Credentials from Web Browsers
T1555.004Windows Credential Manager
discovery3
T1217Browser Information Discovery
T1082System Information Discovery
T1518Software Discovery
execution3
T1059.001PowerShell
T1059.005Visual Basic
T1053.005Scheduled Task
persistence1
T1053.005Scheduled Task
privilege-escalation1
T1053.005Scheduled Task
resource-development2
T1587.001Malware
T1584.004Server
stealth1
T1140Deobfuscate/Decode Files or Information

Indicators of compromise

No IOCs linked to this campaign yet.

Juicy Mix — Campaign | Fancy Intel