🇷🇺

Attor

APT Group 9 zero-day CVEs

Also Known As

No alias recorded

Target Countries 5

Countries highlighted in red

Brazil China United Kingdom Ukraine United States

Sectors Targeted

Military Industry Not mentioned IT and security Government (Law Enforcement) Think Tanks Cryptocurrency E-commerce Multiple (including Fortune 500 firms Government) Government and Private organizations public safety Multiple sectors Energy Multiple (Fortune 500 Industrial Control Systems Pharmacies finance and government Ticketing Multiple sectors including Healthcare Health government and law-enforcement agencies) Multiple Private Industry Local Government IT & ITeS News Media Oil and Gas government) Travel and Tourism Maritime Fashion Religious Organizations Biotechnology hospitality Banking Staffing and Recruiting Logistics cloud providers Electoral Internet Service Providers telecommunications construction Public Transport National Security and International Affairs 928 Municipalities hospitals Other Information Services 519 Financial institutions Politics Small Businesses telecom Arms Manufacturing Cannabis Government/Defense Finance Multiple (schools Furniture Manufacturing Political Organizations Nuclear Media) Communications virtual currency Energy Sector Human Resources Space Research and Technology 927 Casino Government (Defense) Civil society Employment screening services Multiple (individuals Other Services (except Public Administration) 81 and critical infrastructure Chemical Manufacturing Critical Infrastructure (Water) manufacturing Construction of Buildings 236 Activists Multiple sectors due to the nature of stolen data Defense NGOs Finance and Insurance 52 IT Services International Organizations Various Gambling Real Estate Nonprofits Staffing and Recruitment Shipping companies and healthcare providers Financial (Cryptocurrency) Computer Systems Design and Related Services 54151 Nonprofit Organizations IT Sector Art Kindergartens Publishing Various sectors including healthcare Air Transportation 481 Critical infrastructure Telecommunications and satellite Professional Services Various sectors including corporations critical infrastructure) Sports Venue Support Agriculture Automotive Native American Tribe Critical Infrastructure (Energy Individuals Utilities 22 healthcare sector Business Process Outsourcing Staffing Multiple sectors mentioned (businesses Political Campaigns Legal Transportation and Logistics Educational Support Services 6117 Financial firms and finance Food services Wholesale Multiple (Technology education financial firms Dissident Groups charities Other Amusement and Recreation Industries 7139 Non-profit Health Care and Social Assistance 62 government agencies and critical infrastructure) insurance Public Health Multiple sectors (medical Paint, Coating, and Adhesive Manufacturing 3255 Health Care Defense Contractors Automobile Dealers 4411 Food Construction 23 Other Food and Agriculture Tourism Cybersecurity Services Commercial Facilities Multiple sectors (small businesses Real Estate/Hospitality (implied from name and nature of business) Media and Journalism Food Manufacturing 311 Gas Stations Human Rights Groups healthcare and life sciences industries.) Religious Organization Journalism Humanitarian Renewable Energy Various Businesses Software Development Retail Public schools Aerospace Computer Systems Design Services 541512 Multiple industries (utilities Automotive Services and government and law-enforcement agencies) Government agencies Auto Services Multiple sectors using Fortinet firewalls (finance Religious Personal Finance Employment Screening Services Healthcare Commerce Offices of Lawyers 541110 Restaurant government educational facilities and government and law-enforcement agencies Pet Care Private sector Healthcare (Medical Devices) Data Processing, Hosting, and Related Services 51821 Accounting Virtual Currency including education and religious organizations Staffing and Workforce Solutions Outsourcing blockchain Not specified Parliament Health care Social media Media and Publishing Food Production legal Auditing Multiple(individuals Video Game Industry Automotive) National Security nonprofits multinational corporations Offices of Physicians 6211 Information 51 Wine Production Labor Union Water Water Treatment Manufacturing and Trade Gaming Industry Eyewear Employment Placement Agencies and Executive Search Services 56131 multinationals Union Digital Engineering Law enforcement Health and Wellness Water and Sewage Grocery Stores Multiple (due to Exchange server compromises) Large multinationals All Periodical Publishers 51112 Legal Services Foreign Affairs Hospitals 622 Consumer Tech Diplomatic Wholesale Trade 42 Arts and Auctions Justice Critical Manufacturing Legal and research industries Communication Private Organizations Financial Sector Water Supply Businesses Private energy All sectors Infrastructure Internet Services Powersports Industrial Technology Semiconductor Manufacturing Food Services and Drinking Places 722 Transportation Marine Federal Contractors Dissident groups Credit Union Education Child Safety schools religious organizations Food and Beverage non-profit organizations Technology Chemicals Internet Service Provider Health Services Data Analytics governments automotive consultancies corporate networks and government Technology Services Gambling and Hospitality Gaming; Social Media businesses Business Social Media Intelligence Human Rights Organizations Employee Benefit Services educational institutions Insurance Carriers and Related Activities 524 Multiple sectors (multinational corporations media Construction consumer surveillance cameras Small Business Semiconductor fabrication Legal departments Defence technology Hospitality Commercial Public Safety Public Relations and Communications Election Healthcare Sector Media Sports and Entertainment Law and public services Information technology Consumer Products Critical National Infrastructure Civil Society law enforcement Law Firms Food and Beverage Manufacturing news media Telecommunications 517 Gaming and Hospitality Water and sanitation sector Public School Systems Business Services government agencies including government Law firms Electric Utilities diplomatic Industrial Heavy-Duty critical national infrastructure Sports critical infrastructure Charity Emergency Services Cloud Mining Human Rights including individuals Housing information technology) nonprofit organizations Manufacturing and trade Private Entities Professional, Scientific, and Technical Services 54 Independent Artists, Writers, and Performers 7115 Cybersecurity manufacturing) Government Agencies Hospitals and Hospitality Small and midsized businesses Law enforcement agencies healthcare Educational Services 61 individuals Civil Rights venture capital Lumber and Other Construction Materials Merchant Wholesalers 4233 business services Staffing and Employment Agency school districts Private Sector Media Organizations Manufacturing Waste Management Research and Development Haulage Critical Infrastructure law enforcement agencies Internet Publishing and Broadcasting and Web Search Portals 51913 health care Chemical including private industries Trade Telecommunications Providers Financial services IT Consulting Network Service Providers Web Hosting Labor Information Technology Food Services Software Nonprofit RV Retail Industries Water Utility energy and government including schools and religious organizations Medical Personal Public Administration 92 Educational institutions Aerospace and Defense Tech Journalism/Media Water and Wastewater Political Airline local municipalities Utilities Pharmaceutical Justice, Public Order, and Safety Activities 9221 Telecommunication Biopharmaceutical Media and Entertainment Gaming and public bodies multinational corporations) Multiple sectors (unregulated industries National Security and International Affairs 928110 BFSI Law Enforcement School districts Telecommunications and satellite companies Shipping Research IT Financial government facilities small businesses local governments public services and healthcare sector Public Small businesses Multiple sectors affected due to the broad nature of infostealer malware. Schools transportation Accommodation and Food Services 72 railway agency Public Administration Spectator Sports 7112 including retail Accommodation 721 Transportation) Foreign ministries Human Services Gambling and Casinos Real Estate 531 Public Sector Truck Transportation 484 Travel Cloud Computing Power and Utilities Universities Consulting Semiconductor Fabrication Multiple Sectors Political Organisations critical infrastructure facilities Engineering Telecommunications Food Manufacturing Higher Education Research and Education General Public Entertainment Telecom Telecoms Food & Beverage virtual token business) NAICS:31 31 public services Jewelry Manufacturing Pharmaceuticals Consumers iGaming Non-governmental organizations Various sectors Legal and Research Industries Chemical Manufacturing 325 Municipal and law enforcement agencies Consumer Electronics Financial Institutions defense Information Services Research and Consulting Corporations screening companies interactive entertainment Government Aviation Financial Technology (Fintech) Water Utilities Think tanks and even law enforcement agencies) Insurance Defense Industrial Base Academia Civil Society Organizations Individual Architecture and Engineering Medical Device Manufacturing Financial Services

Details

Origin 🇷🇺 RU
Last Updated 01 Jun 2022

MITRE ATT&CK 30

T1003 - OS Credential Dumping T1010 - Application Window Discovery T1012 - Query Registry T1016.001 T1021 - Remote Services T1027 - Obfuscated Files or Information T1041 T1049 T1057 T1059 T1059.003 T1070 T1082 T1090 T1095 T1102 T1106 - Native API T1110 T1133 T1140 - Deobfuscate/Decode Files or Information T1199 T1204 T1218 - Signed Binary Proxy Execution T1498 T1498.001 T1530 T1547 - Boot or Logon Autostart Execution T1553 T1560 T1574