CyberSecurityBoardThreat Intel · CVEs · Products

Category: Attack Groups

MITRE ATT&CK groups, threat actors, intrusion sets and activity clusters.

Attack Groups

Rocke

[Rocke](https://attack.mitre.org/groups/G0106) is an alleged Chinese-speaking adversary whose primary objective appeared to be cryptojacking, or stealing victim system resources for the purposes of…

G0106 Rocke
April 25, 2025
Attack Groups

PLATINUM

[PLATINUM](https://attack.mitre.org/groups/G0068) is an activity group that has targeted victims since at least 2009. The group has focused on targets associated with governments…

G0068 PLATINUM
April 25, 2025
Attack Groups

DarkVishnya

[DarkVishnya](https://attack.mitre.org/groups/G0105) is a financially motivated threat actor targeting financial institutions in Eastern Europe. In 2017-2018 the group attacked at least 8 banks…

DarkVishnya G0105
April 25, 2025
Attack Groups

Stealth Falcon

[Stealth Falcon](https://attack.mitre.org/groups/G0038) is a threat group that has conducted targeted spyware attacks against Emirati journalists, activists, and dissidents since at least 2012.…

G0038 Stealth Falcon
April 25, 2025
Attack Groups

RTM

[RTM](https://attack.mitre.org/groups/G0048) is a cybercriminal group that has been active since at least 2015 and is primarily interested in users of remote banking…

G0048 RTM
April 25, 2025
Attack Groups

BackdoorDiplomacy

[BackdoorDiplomacy](https://attack.mitre.org/groups/G0135) is a cyber espionage threat group that has been active since at least 2017. [BackdoorDiplomacy](https://attack.mitre.org/groups/G0135) has targeted Ministries of Foreign Affairs…

BackdoorDiplomacy G0135
April 25, 2025
Attack Groups

BRONZE BUTLER

[BRONZE BUTLER](https://attack.mitre.org/groups/G0060) is a cyber espionage group with likely Chinese origins that has been active since at least 2008. The group primarily…

BRONZE BUTLER G0060 REDBALDKNIGHT Tick
April 25, 2025
Attack Groups

admin@338

[admin@338](https://attack.mitre.org/groups/G0018) is a China-based cyber threat group. It has previously used newsworthy events as lures to deliver malware and has primarily targeted…

admin@338 G0018
April 25, 2025
Attack Groups

Equation

[Equation](https://attack.mitre.org/groups/G0020) is a sophisticated threat group that employs multiple remote access tools. The group is known to use zero-day exploits and has…

Equation G0020
April 25, 2025
Attack Groups

Lotus Blossom

[Lotus Blossom](https://attack.mitre.org/groups/G0030) is a long-standing threat group largely targeting various entities in Asia since at least 2009. In addition to government and…

Bilbug DRAGONFISH G0030 Lotus Blossom
April 23, 2025