Hagga
Hagga is believed to have been using Agent Tesla, 2021’s sixth most prevalent malware, to steal sensitive information from his victims since the latter part of 2021.
Hagga is a threat actor known for stealing sensitive information primarily using Agent Tesla malware.
Hagga (also known as Aggah or TH-157) is a threat actor of currently undetermined type. The actor primarily targets victims to steal sensitive information. The main tool utilized is the Agent Tesla malware, which was the sixth most prevalent malware in 2021. Defenders should focus on detecting Agent Tesla infections, likely delivered via phishing, and blocking its C2 communications.
Hagga is believed to have been using Agent Tesla, 2021’s sixth most prevalent malware, to steal sensitive information from his victims since the latter part of 2021.
Hagga primarily uses the Agent Tesla malware to steal sensitive information from its victims.
Defenders should note that Agent Tesla infections are likely delivered via phishing.
Every claim on this page is drawn from the cited source (MISP Galaxy, MITRE ATT&CK, ransomware.live) — no attribution is invented.