Research Threat intelligence Threat actors Published Mar 4, 2021 22 min read GoldMax, GoldFinder, and Sibot: Analyzing NOBELIUM’s layered persistence Microsoft has identified three new pieces of malware being used in late-stage activity by NOBELIUM – the actor behind the SolarWinds attacks, SUNBURST, and TEARDROP.