Introducing Cymulate Vero AI for Agentic Cyber Defense Engineering
Learn More
New: 2026 Gartner® Market Guide for Adversarial Exposure Validation
Learn More
New Research: Exploiting Configuration Trust in AI Coding Tools
Learn More
New Case Study: How a Financial Authority Validates Cyber Resilience
Learn More

APT15 Targets Multiple Sectors With Turian Backdoor

January 29, 2023

APT15, also known as Playful Taurus, is an advanced persistent threat (APT) that conducts a variety of cyber operations across multiple regions around the world. The threat actor was discovered targeting the Iranian telecommunications and diplomatic sectors with the Turian backdoor. The backdoor is packed with VMProtect to obfuscate the Application Programming Interface (API), thus making analysis difficult. The malware contains a wide range of capabilities from spawning reverse shells to executing commands from the command-and-control server.