🇨🇳

LightBasin

APT Group Information theft and espionage 4 zero-day CVEs ETDA ✓

Also Known As 2 names

CL-CRI-0025 UNC1945

Target Countries 3

Countries highlighted in red

Nigeria Russian Federation United States

Sectors Targeted

Financial Telecommunications Offices of Lawyers 541110 IT

Details

Origin 🇨🇳 CN
Last Updated 02 Dec 2023

MITRE ATT&CK 29

T1016 - System Network Configuration Discovery T1021 - Remote Services T1021.001 T1021.004 - SSH T1027 - Obfuscated Files or Information T1043 T1046 - Network Service Scanning T1059 - Command and Scripting Interpreter T1059.001 T1059.004 - Unix Shell T1064 - Scripting T1070 - Indicator Removal on Host T1070.001 - Clear Windows Event Logs T1071 - Application Layer Protocol T1071.001 T1078.002 T1082 - System Information Discovery T1090 - Proxy T1105 - Ingress Tool Transfer T1110.001 - Password Guessing T1132 - Data Encoding T1133 - External Remote Services T1140 T1190 - Exploit Public-Facing Application T1204 T1518 - Software Discovery T1553 - Subvert Trust Controls T1556.003 - Pluggable Authentication Modules T1572 - Protocol Tunneling