Storm-1575
APT Group
Also Known As
No alias recordedTarget Countries 2
Countries highlighted in red
Australia
India
Details
Last Updated
13 Apr 2026
MITRE ATT&CK 40
T1018
T1027 - Obfuscated Files or Information
T1027.003 - Steganography
T1036 - Masquerading
T1056 - Input Capture
T1056.001 - Keylogging
T1059 - Command and Scripting Interpreter
T1059.003
T1059.007 - JavaScript
T1071.001 - Web Protocols
T1078 - Valid Accounts
T1082
T1102 - Web Service
T1102.003 - One-Way Communication
T1111 - Two-Factor Authentication Interception
T1132 - Data Encoding
T1140 - Deobfuscate/Decode Files or Information
T1185 - Man in the Browser
T1189 - Drive-by Compromise
T1204 - User Execution
T1204.001 - Malicious Link
T1218.007 - Msiexec
T1219 - Remote Access Software
T1497 - Virtualization/Sandbox Evasion
T1497.001 - System Checks
T1499 - Endpoint Denial of Service
T1518.001 - Security Software Discovery
T1528 - Steal Application Access Token
T1539 - Steal Web Session Cookie
T1556 - Modify Authentication Process
T1557 - Man-in-the-Middle
T1566 - Phishing
T1573 - Encrypted Channel
T1583 - Acquire Infrastructure
T1584 - Compromise Infrastructure
T1589 - Gather Victim Identity Information
T1590.001 - Domain Properties
T1591 - Gather Victim Org Information
T1592 - Gather Victim Host Information
T1608 - Stage Capabilities