CyberSecurityBoardThreat Intel · CVEs · Products

Category: Attack Groups

MITRE ATT&CK groups, threat actors, intrusion sets and activity clusters.

Attack Groups

APT19

[APT19](https://attack.mitre.org/groups/G0073) is a Chinese-based threat group that has targeted a variety of industries, including defense, finance, energy, pharmaceutical, telecommunications, high tech, education,…

APT19 C0d0so0 Codoso Codoso Team
April 11, 2024
Attack Groups

APT39

[APT39](https://attack.mitre.org/groups/G0087) is one of several names for cyber espionage activity conducted by the Iranian Ministry of Intelligence and Security (MOIS) through the…

APT39 Chafer G0087 ITG07
April 11, 2024
Attack Groups

BITTER

[BITTER](https://attack.mitre.org/groups/G1002) is a suspected South Asian cyber espionage threat group that has been active since at least 2013. [BITTER](https://attack.mitre.org/groups/G1002) has targeted government,…

BITTER G1002 T-APT-17
April 11, 2024
Attack Groups

Dark Caracal

[Dark Caracal](https://attack.mitre.org/groups/G0070) is threat group that has been attributed to the Lebanese General Directorate of General Security (GDGS) and has operated since…

Dark Caracal G0070
April 11, 2024
Attack Groups

Group5

[Group5](https://attack.mitre.org/groups/G0043) is a threat group with a suspected Iranian nexus, though this attribution is not definite. The group has targeted individuals connected…

G0043 Group5
April 11, 2024
Attack Groups

Inception

[Inception](https://attack.mitre.org/groups/G0100) is a cyber espionage group active since at least 2014. The group has targeted multiple industries and governmental entities primarily in…

Cloud Atlas G0100 Inception Inception Framework
April 11, 2024
Attack Groups

Metador

[Metador](https://attack.mitre.org/groups/G1013) is a suspected cyber espionage group that was first reported in September 2022. [Metador](https://attack.mitre.org/groups/G1013) has targeted a limited number of telecommunication…

G1013 Metador
April 11, 2024
Attack Groups

Mofang

[Mofang](https://attack.mitre.org/groups/G0103) is a likely China-based cyber espionage group, named for its frequent practice of imitating a victim's infrastructure. This adversary has been…

G0103 Mofang
April 11, 2024
Attack Groups

Sidewinder

[Sidewinder](https://attack.mitre.org/groups/G0121) is a suspected Indian threat actor group that has been active since at least 2012. They have been observed targeting government,…

G0121 Rattlesnake Sidewinder T-APT-04
April 11, 2024
Attack Groups

TA2541

[TA2541](https://attack.mitre.org/groups/G1018) is a cybercriminal group that has been targeting the aviation, aerospace, transportation, manufacturing, and defense industries since at least 2017. [TA2541](https://attack.mitre.org/groups/G1018)…

G1018 TA2541
April 10, 2024