SideTwist is a malware family associated with host reconnaissance on compromised systems. It has been observed collecting the computer name of a targeted machine, indicating use in victim profiling and environment discovery after compromise. This behavior supports operator awareness of the infected host and can assist in tasking, victim identification, and follow-on intrusion activity. High-confidence public information in the available record is limited to this reconnaissance capability, and there is insufficient corroborated evidence here to attribute SideTwist to a specific threat actor, country of origin, target geography, industry focus, or broader operational objective.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
1 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.