{"schema":"aeternae-malware-metadata/v1","generated_at":"2026-10-08T08:40:32+00:00","total_matching":1,"page":1,"page_size":200,"records":[{"id":"5ae06b4db1a21d41d9ed865b36b8178686a1b51e7eafdf2733ddccd3fae4bfef","kind":"reference","title":"Metamorfo - S0455","family":"Metamorfo - S0455","category":"Malware intelligence","summary":"Name of ATT&CK software | [Metamorfo](https://attack.mitre.org/software/S0455) is a Latin-American banking trojan operated by a Brazilian cybercrime group that has been active since at least April 2018. The group focuses on targeting banks and cryptocurrency services in Brazil and Mexico.(Citation: Medium Metamorfo Apr 2020)(Citation: ESET Casbaneiro Oct 2019)","first_seen":1708432322,"last_seen":1708432322,"created_at":1791438889,"updated_at":1791438889,"source_count":1,"data":{"context":"2024/02/google-cloud-run-abuse.json","tags":["misp:galaxy-name=\"Malware\"","misp:galaxy-type=\"mitre-malware\"","misp-galaxy:mitre-malware=\"Metamorfo - S0455\""],"aliases":[],"references":["https://github.com/Cisco-Talos/IOCs/blob/main/2024/02/google-cloud-run-abuse.json"],"filenames":[],"features":[],"related_cves":[],"labels":["Metamorfo - S0455"]},"observations":[{"source_id":"talos_ioc","source_url":"https://github.com/Cisco-Talos/IOCs/blob/main/2024/02/google-cloud-run-abuse.json","source_label":"Metamorfo - S0455","evidence_class":"provider_reported","confidence":null,"observed_at":1708432322,"fetched_at":1791438889,"data":{"context":"2024/02/google-cloud-run-abuse.json","tags":["misp:galaxy-name=\"Malware\"","misp:galaxy-type=\"mitre-malware\"","misp-galaxy:mitre-malware=\"Metamorfo - S0455\""],"aliases":[],"references":["https://github.com/Cisco-Talos/IOCs/blob/main/2024/02/google-cloud-run-abuse.json"],"family":"Metamorfo - S0455"}}],"indicators":[]}]}