Description
HALFBAKED is a backdoor tool that researchers associated with the APT29 threat group, which used it to survey victims, execute commands, and harvest credentials from compromised systems. The tool communicated with command and control servers through encrypted channels and supported in memory execution to avoid leaving artifacts on disk.
Stats
- First seen
- July 2022
- Last seen
- October 2026
MITRE ATT&CK techniques
6 techniques across 4 tactics.
Associated groups
Alert name variants
| Alert Name |
|---|
| Document-Word.Backdoor.Halfbaked |