Netskope Threat Labs

StoneDrill

ATP Sandbox Adv. HeuristicsAV

StoneDrill is wiper malware discovered in destructive campaigns against Middle Eastern and European targets, associated with the APT33 threat actor.

First seen
March 2022
Last seen
October 2026
Stonedrill

15 techniques across 6 tactics.

TA0002 Execution

  • T1047Windows Management Instrumentation
  • T1059Command and Scripting Interpreter

TA0005 Stealth

TA0007 Discovery

TA0009 Collection

TA0011 Command and Control

  • T1105Ingress Tool Transfer

TA0040 Impact

Alert Name
Gen:Variant.StoneDrill.3
Win32.Backdoor.Stonedrill
Win32.Trojan.Stonedrill
Win32.Trojan.StoneDrill