🇨🇳
LightBasin
APT Group
Information theft and espionage
4 zero-day CVEs
ETDA ✓
Also Known As 2 names
CL-CRI-0025
UNC1945
Target Countries 3
Countries highlighted in red
Nigeria
Russian Federation
United States
Sectors Targeted
Details
Origin
🇨🇳 CN
Last Updated
02 Dec 2023
MITRE ATT&CK 29
T1016 - System Network Configuration Discovery
T1021 - Remote Services
T1021.001
T1021.004 - SSH
T1027 - Obfuscated Files or Information
T1043
T1046 - Network Service Scanning
T1059 - Command and Scripting Interpreter
T1059.001
T1059.004 - Unix Shell
T1064 - Scripting
T1070 - Indicator Removal on Host
T1070.001 - Clear Windows Event Logs
T1071 - Application Layer Protocol
T1071.001
T1078.002
T1082 - System Information Discovery
T1090 - Proxy
T1105 - Ingress Tool Transfer
T1110.001 - Password Guessing
T1132 - Data Encoding
T1133 - External Remote Services
T1140
T1190 - Exploit Public-Facing Application
T1204
T1518 - Software Discovery
T1553 - Subvert Trust Controls
T1556.003 - Pluggable Authentication Modules
T1572 - Protocol Tunneling