[threat-actors] Fix G0055 (NEODYMIUM) alias

This commit is contained in:
Mathieu Beligon 2022-09-29 17:15:36 -07:00
parent 9338222b64
commit 74c6835d18

View file

@ -3702,12 +3702,10 @@
"refs": [
"https://www.microsoft.com/security/blog/2016/12/14/twin-zero-day-attacks-promethium-and-neodymium-target-individuals-in-europe/",
"https://www.virusbulletin.com/conference/vb2016/abstracts/last-minute-paper-strongpity-waterhole-attacks-targeting-italian-and-belgian-encryption-users",
"https://attack.mitre.org/groups/G0055/",
"https://attack.mitre.org/groups/G0056/"
],
"synonyms": [
"StrongPity",
"G0055",
"G0056"
]
},
@ -3734,7 +3732,11 @@
"description": "NEODYMIUM is an activity group that is known to use a backdoor malware detected by Microsoft as Wingbird. This backdoors characteristics closely match FinFisher, a government-grade commercial surveillance package. Data about Wingbird activity indicate that it is typically used to attack individual computers instead of networks.",
"meta": {
"refs": [
"https://blogs.technet.microsoft.com/mmpc/2016/12/14/twin-zero-day-attacks-promethium-and-neodymium-target-individuals-in-europe/"
"https://blogs.technet.microsoft.com/mmpc/2016/12/14/twin-zero-day-attacks-promethium-and-neodymium-target-individuals-in-europe/",
"https://attack.mitre.org/groups/G0055/"
],
"synonyms": [
"G0055"
]
},
"related": [