AdvisoryAdvisoriesCISAAA23-129A

May 9, 2023

Snake Malware Slithering to Prominence

May 9, 2023

What we know so far

The Snake implant is a highly sophisticated cyber espionage tool developed and utilized by Russia's Federal Security Service (FSB). It is designed for long-term intelligence gathering on sensitive targets. The FSB has created a covert peer-to-peer network using Snake-infected computers worldwide, with many systems serving as relay nodes to disguise operational traffic. Snake employs custom communication protocols with encryption and fragmentation to ensure confidentiality and hinder detection.

While Snake targets various industries, its focus is purposeful and tactical. In the United States, the FSB has targeted industries like education, small businesses, and media, as well as critical infrastructure sectors such as government facilities, financial services, critical manufacturing, and communications.

Arrow Right

Schedule a test

Subscribe to advisory alerts

Be immediately notified of new advisories and associated security tests

More advisories