
Threat Intelligence
Comprehensive profiles of 171 advanced persistent threat (APT) groups and their tactics, techniques, and procedures (TTPs). Understanding adversary behavior is critical for effective defense.
171
171
20
51
admin@338
admin@338 is a China-based cyber threat group that has previously used newsworthy events as lures to deliver malware and has primarily targeted organizations involved in financial, economic, and trade policy.
Target Sectors:
Agrius
Also known as:
Agrius is an Iranian threat actor active since 2020 notable for a series of ransomware and wiper operations in the Middle East, with an emphasis on Israeli targets.
Target Sectors:
Ajax Security Team
Also known as:
Ajax Security Team is a group that has been active since at least 2010 and believed to be operating out of Iran.
Target Sectors:
Andariel
Also known as:
Andariel is a North Korean state-sponsored threat group that has been active since at least 2009, focusing on South Korean government agencies and military organizations.
Target Sectors:
Aoqin Dragon
Aoqin Dragon is a suspected Chinese cyber espionage threat group that has been active since at least 2013, targeting government, education, and telecommunication organizations.
Target Sectors:
APT1
Also known as:
APT1 is a Chinese threat group attributed to the 2nd Bureau of the People's Liberation Army (PLA) General Staff Department's 3rd Department, Unit 61398.
Target Sectors:
Threat Actor Distribution
33.3% of total
18.1% of total
12.9% of total
12.3% of total
6.4% of total
2.3% of total
2.3% of total
1.8% of total
