From 2dc138ae01ab6abbf86e30071bffbd47638affed Mon Sep 17 00:00:00 2001 From: Rony Date: Sat, 27 Aug 2022 12:08:11 +0000 Subject: [PATCH] chg: [threat-actor] add Adam Kozy's testimony ro APT41 and APT26 --- clusters/threat-actor.json | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/clusters/threat-actor.json b/clusters/threat-actor.json index f3f6847..69cea13 100644 --- a/clusters/threat-actor.json +++ b/clusters/threat-actor.json @@ -4608,7 +4608,8 @@ "attribution-confidence": "50", "country": "CN", "refs": [ - "https://www.secureworks.com/research/threat-profiles/bronze-express" + "https://www.secureworks.com/research/threat-profiles/bronze-express", + "https://www.uscc.gov/sites/default/files/2022-02/Adam_Kozy_Testimony.pdf" ], "synonyms": [ "Hippo Team", @@ -7429,7 +7430,8 @@ "https://unit42.paloaltonetworks.com/apt41-using-new-speculoos-backdoor-to-target-organizations-globally/", "https://www.mandiant.com/resources/report-apt41-double-dragon-a-dual-espionage-and-cyber-crime-operation", "https://www.cfr.org/cyber-operations/apt-41", - "https://attack.mitre.org/groups/G0096/" + "https://attack.mitre.org/groups/G0096", + "https://www.uscc.gov/sites/default/files/2022-02/Adam_Kozy_Testimony.pdf" ], "synonyms": [ "Double Dragon",