mirror of
https://github.com/MISP/misp-galaxy.git
synced 2024-11-26 16:57:18 +00:00
More synonyms added
This commit is contained in:
parent
5969d80d5f
commit
6e08397d5b
1 changed files with 10 additions and 2 deletions
|
@ -15,6 +15,7 @@
|
|||
"Comment Crew",
|
||||
"Sofacy",
|
||||
"APT 29",
|
||||
"APT30",
|
||||
"Turla Group",
|
||||
"Energetic Bear",
|
||||
"Sandworm",
|
||||
|
@ -244,7 +245,9 @@
|
|||
"BeeBus",
|
||||
"Group 22",
|
||||
"DynCalc",
|
||||
"Crimson Iron"
|
||||
"Crimson Iron",
|
||||
"APT12",
|
||||
"APT 12"
|
||||
]
|
||||
},
|
||||
{
|
||||
|
@ -292,7 +295,8 @@
|
|||
"Group 72",
|
||||
"Group72",
|
||||
"Tailgater",
|
||||
"Ragebeast"
|
||||
"Ragebeast",
|
||||
"Blackfly"
|
||||
]
|
||||
},
|
||||
{
|
||||
|
@ -911,6 +915,10 @@
|
|||
"synonyms": ["Strider", "Sauron"],
|
||||
"description": "ProjectSauron is the name for a top level modular cyber-espionage platform, designed to enable and manage long-term campaigns through stealthy survival mechanisms coupled with multiple exfiltration methods. Technical details show how attackers learned from other extremely advanced actors in order to avoid repeating their mistakes. As such, all artifacts are customized per given target, reducing their value as indicators of compromise for any other victim. Usually APT campaigns have a geographical nexus, aimed at extracting information within a specific region or from a given industry. That usually results in several infections in countries within that region, or in the targeted industry around the world. Interestingly, ProjectSauron seems to be dedicated to just a couple of countries, focused on collecting high value intelligence by compromising almost all key entities it could possibly reach within the target area. The name, ProjectSauron reflects the fact that the code authors refer to ‘Sauron’ in the Lua scripts.",
|
||||
"refs": ["https://securelist.com/analysis/publications/75533/faq-the-projectsauron-apt/"]
|
||||
},
|
||||
{
|
||||
"value": "APT30",
|
||||
"refs": ["https://www2.fireeye.com/rs/fireye/images/rpt-apt30.pdf"]
|
||||
}
|
||||
]
|
||||
}
|
||||
|
|
Loading…
Reference in a new issue