mirror of
https://github.com/MISP/misp-galaxy.git
synced 2024-11-26 08:47:18 +00:00
[threat-actors] Add UNC4191
This commit is contained in:
parent
941ef757bb
commit
dc9d98ffe9
1 changed files with 12 additions and 0 deletions
|
@ -13068,6 +13068,18 @@
|
||||||
},
|
},
|
||||||
"uuid": "6f6b187b-971b-4df9-a7ef-9b3fd7e092f7",
|
"uuid": "6f6b187b-971b-4df9-a7ef-9b3fd7e092f7",
|
||||||
"value": "DriftingCloud"
|
"value": "DriftingCloud"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"description": "UNC4191 is a China-linked threat actor that has been involved in cyber espionage campaigns targeting public and private sectors primarily in Southeast Asia. They have been known to use USB devices as an initial infection vector and have been observed deploying various malware families on infected systems. UNC4191's operations have also extended to the US, Europe, and the Asia Pacific Japan region, with a particular focus on the Philippines.",
|
||||||
|
"meta": {
|
||||||
|
"country": "CN",
|
||||||
|
"refs": [
|
||||||
|
"https://www.mandiant.com/resources/blog/china-nexus-espionage-southeast-asia",
|
||||||
|
"https://therecord.media/espionage-group-using-usb-devices-to-hack-targets-in-southeast-asia/"
|
||||||
|
]
|
||||||
|
},
|
||||||
|
"uuid": "df697450-57e0-496b-982c-a167ed41f023",
|
||||||
|
"value": "UNC4191"
|
||||||
}
|
}
|
||||||
],
|
],
|
||||||
"version": 294
|
"version": 294
|
||||||
|
|
Loading…
Reference in a new issue