Discover the
adversaries targeting your industry
Please select a filter to get Threat Actors!
Top Threat Actors
255000
Audience
2
News
0
IOC
Target Countries:
France
Latvia
Ukraine
Canada
United Kingdom
+ 6
Target Sectors:
NAICS:22 -
NAICS:51 -
NAICS:61 -
NAICS:62 -
NAICS:92 -
Associated Malware/Software:
No Malware available.
Related CVE's:
No CVE's available.
ATT&CK IDs:
T1071.001 - Application Layer Protocol Web Protocols
T1078 - Valid Accounts
T1566.002 - Phishing Spearphishing Link
T1528 - Steal Application Access Token
T1114.002 - Email Collection Remote Email Collection
See Details
100000
Audience
1
News
140
IOC
See Details
100000
Audience
1
News
28
IOC
See Details
76176
Audience
1
News
0
IOC
Target Countries:
Korea, Republic of
Netherlands
Bangladesh
Poland
France
+ 24
Target Sectors:
NAICS:31 -
NAICS:92 -
NAICS:61 -
NAICS:722 -
NAICS:22 -
Related CVE's:
No specific CVEs are widely attributed to NoName057(16) due to their focus on DDoS attacks rather than exploiting vulnerabilities.
CVE-2024-21378
CVE-2023-36884
CVE-2022-47633
CVE-2022-45359
+ 26
ATT&CK IDs:
T1059
T1129
T1071.002
T1583.005
T1598 - Phishing for Information
+ 157
See Details
- France
- Latvia
- Ukraine
- Canada
- United Kingdom
- Germany
- Estonia
- Finland
- Lithuania
- United States
- Poland
- T1071.001 - Application Layer Protocol Web Protocols
- T1078 - Valid Accounts
- T1566.002 - Phishing Spearphishing Link
- T1528 - Steal Application Access Token
- T1114.002 - Email Collection Remote Email Collection
- T1059
- T1055
- T1566
- T1027
- T1140
- T1112
- T1021
- T1018
- T1204
- T1036
- T1560
- T1106
- T1547
- T1070.004
- T1082
- T1210
-
RemcosRAT
-
remcos
-
win.remcos
- T1082 - System Information Discovery
- T1078 - Valid Accounts
- T1571 - Non-Standard Port
- T1090 - Proxy
- T1140 - Deobfuscate/Decode Files or Information
- T1027
- T1588 - Obtain Capabilities
- T1055 - Process Injection
- T1573 - Encrypted Channel
- T1037 - Boot or Logon Initialization Scripts
- T1553 - Subvert Trust Controls
- T1059.001
- T1569 - System Services
- T1566.001
- T1070 - Indicator Removal on Host
- T1036 - Masquerading
- T1543 - Create or Modify System Process
- T1027 - Obfuscated Files or Information
- T1112 - Modify Registry
- T1574 - Hijack Execution Flow
- T1490
- T1547 - Boot or Logon Autostart Execution
- T1105 - Ingress Tool Transfer
- T1059 - Command and Scripting Interpreter
- T1078
-
win.vshell
-
sliver
-
SNOWLIGHT
- Korea, Republic of
- Netherlands
- Bangladesh
- Poland
- France
- China
- Switzerland
- Slovakia
- Spain
- Singapore
- Latvia
- Estonia
- Lithuania
- Ukraine
- Argentina
- United Kingdom
- Canada
- Czech Republic
- Germany
- Japan
- Norway
- Italy
- Sweden
- Ireland
- Austria
- Russian Federation
- Denmark
- Finland
- Malaysia
Discover the adversaries targeting your industry
Search Your Enemy