Ida - Tool

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
November 15, 2025
Last Seen
May 7, 2026

Ida is a tool tracked across 4 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed November 15, 2025; most recent activity May 7, 2026.

Related Threat Clusters

  • TCLBANKER Trojan Targets Brazilian Financial Sector via Logitech Installer

    A new banking trojan named TCLBANKER has emerged, targeting 59 Brazilian banking, fintech, and cryptocurrency platforms. Discovered by Elastic Security Labs, the malware utilizes a trojanized MSI installer of Logitech's…

    8 articles · Updated May 7, 2026
  • Critical Windows Graphics Vulnerabilities Enable Remote Code Execution

    Multiple vulnerabilities in the Windows Graphics Device Interface (GDI) have been identified, allowing remote code execution (RCE) and data leaks. Discovered by Check Point Research, these flaws involve malformed…

    5 articles · Updated November 21, 2025
  • Revival of Finger Command in ClickFix Malware Attacks

    Threat actors are exploiting the decades-old 'finger' command in new ClickFix malware attacks to execute remote commands on Windows devices. The command, which was historically used to retrieve user information on Unix…

    4 articles · Updated November 17, 2025
  • Revival of 'Finger' Command in ClickFix Malware Attacks

    Threat actors have reintroduced the decades-old 'finger' command in new ClickFix malware attacks to facilitate remote command execution on Windows devices. The command, originally used for user information retrieval on…

    2 articles · Updated November 17, 2025

Recent Intelligence Reports

  • New TCLBanker malware self — Bleepingcomputer · May 7, 2026
  • CVE-2025-50165: Windows Graphics Component Flaw | ThreatLabz — Zscaler · November 20, 2025
  • Decades-old ‘Finger’ protocol abused in ClickFix malware attacks — Bleepingcomputer · November 15, 2025

CVSS v3.1 Breakdown