🇨🇳
Wekby
APT Group
Information theft and espionage
5 zero-day CVEs
ETDA ✓
Also Known As 8 names
APT18
DYNAMITE PANDA
G0026
PLA Navy
SCANDIUM
Satin Typhoon
TG-0416
APT 18
Target Countries 24
Countries highlighted in red
United Arab Emirates
Australia
Bangladesh
Burkina Faso
Chile
China
Germany
Egypt
Finland
France
United Kingdom
Hong Kong
Israel
India
Japan
Kenya
Republic of Korea
Mexico
New Zealand
Province of China Taiwan
Ukraine
United States
South Africa
Zambia
Sectors Targeted
Offices of Physicians
6211
Periodical Publishers
51112
Research and Development in the Social Sciences and Humanities
54172
Biotechnology
Computer Systems Design and Related Services
54151
Hospitals
622
Toilet Preparation Manufacturing
32562
High-Tech
Civic and Social Organizations
8134
Management Consulting Services
54161
Architectural Services
541310
Transportation
Engineering
Telecommunications
Semiconductor and Other Electronic Component Manufacturing
33441
Public Relations Agencies
54182
Colleges, Universities, and Professional Schools
6113
Aerospace
Aviation
Employment Placement Agencies and Executive Search Services
56131
Education
Business to Business Electronic Markets
42511
Computer Systems Design Services
541512
Commercial Banking
52211
Healthcare
Government
Remediation and Other Waste Management Services
5629
Pharmaceutical and Medicine Manufacturing
32541
Newspaper Publishers
51111
Motion Picture and Video Production
51211
Insurance Carriers and Related Activities
524
Construction
Food Services and Drinking Places
722
Grantmaking and Giving Services
8132
Executive, Legislative, and Other General Government Support
9211
Defense
Sporting and Athletic Goods Manufacturing
339920
Data Processing, Hosting, and Related Services
51821
Advertising Agencies
54181
National Security and International Affairs
928110
Educational Support Services
6117
Details
Origin
🇨🇳 CN
Last Updated
01 Jun 2022
Malware Families 1
roseam
MITRE ATT&CK 97
T1003
T1005
T1007
T1008
T1011
T1012
T1016
T1021
T1027 - Obfuscated Files or Information
T1027.013
T1033
T1036
T1041
T1043
T1047
T1048
T1049
T1053
T1053.002
T1055
T1057
T1059
T1059.001
T1059.003
T1060
T1070
T1070.004
T1071
T1071.001
T1071.004
T1078
T1078.001
T1081
T1082
T1083
T1085
T1087
T1090
T1095
T1102
T1105
T1106
T1107
T1110
T1112
T1114
T1114.001
T1115
T1119
T1120
T1124
T1127
T1130
T1132
T1133
T1136
T1137
T1140 - Deobfuscate/Decode Files or Information
T1170
T1176
T1190
T1204 - User Execution
T1204.002
T1213.003
T1217
T1218 - Signed Binary Proxy Execution
T1485
T1486
T1489
T1490 - Inhibit System Recovery
T1497
T1497.003
T1498 - Network Denial of Service
T1503
T1518
T1529
T1530
T1531
T1539
T1543
T1547
T1547.001
T1550
T1552
T1553 - Subvert Trust Controls
T1555
T1560
T1561
T1562
T1562.001
T1566 - Phishing
T1566.001
T1571
T1573
T1583
T1587
T1595