mirror of
https://github.com/MISP/misp-galaxy.git
synced 2024-11-26 16:57:18 +00:00
More actors CN,TN and RU + synonyms
This commit is contained in:
parent
c4caaeb5d0
commit
ddd49b277d
1 changed files with 30 additions and 3 deletions
|
@ -3,7 +3,7 @@
|
||||||
"description": "Known or estimated adversary groups targeting organizations and employees. Adversary groups are regularly confused with their initial operation or campaign.",
|
"description": "Known or estimated adversary groups targeting organizations and employees. Adversary groups are regularly confused with their initial operation or campaign.",
|
||||||
"authors": ["Alexandre Dulaunoy", "Florian Roth", "Various"],
|
"authors": ["Alexandre Dulaunoy", "Florian Roth", "Various"],
|
||||||
"type": "Adversary Groups",
|
"type": "Adversary Groups",
|
||||||
"groups" : ["Comment Crew","Putter Panda","Sofacy","APT 29","Turla Group","Energetic Bear","Sandworm","Anunak","TeamSpy Crew","BuhTrap","Putter Panda","UPS","IXESHE","APT 16","Aurora Panda","Wekby","Axiom","Shell Crew","Naikon","Lotus Blossom","Hurricane Panda","Emissary Panda","Stone Panda","Nightshade Panda","Hellsing","Night Dragon","Mirage","Anchor Panda","NetTraveler","Ice Fog","HiddenLynx","Beijing Group","Pirate Panda","Radio Panda","Dagger Panda","Samurai Panda","Impersonating Panda","Violin Panda","Toxic Panda","Temper Panda","Flying Kitten","Pirate Panda","Viking Jackal","Cutting Kitten"],
|
"groups" : ["Comment Crew","Putter Panda","Sofacy","APT 29","Turla Group","Energetic Bear","Sandworm","Anunak","TeamSpy Crew","BuhTrap","Putter Panda","UPS","IXESHE","APT 16","Aurora Panda","Wekby","Axiom","Shell Crew","Naikon","Lotus Blossom","Hurricane Panda","Emissary Panda","Stone Panda","Nightshade Panda","Hellsing","Night Dragon","Mirage","Anchor Panda","NetTraveler","Ice Fog","HiddenLynx","Beijing Group","Pirate Panda","Radio Panda","Dagger Panda","Samurai Panda","Impersonating Panda","Violin Panda","Toxic Panda","Temper Panda","Flying Kitten","Pirate Panda","Viking Jackal","Cutting Kitten","Rebel Jackal","Stalker Panda","Berserk Bear","Dizzy Panda","Predator Panda"],
|
||||||
"details" : [
|
"details" : [
|
||||||
{
|
{
|
||||||
"group": "Comment Crew",
|
"group": "Comment Crew",
|
||||||
|
@ -13,6 +13,18 @@
|
||||||
"synonyms": ["Comment Panda","PLA Unit 61398", "APT 1","Advanced Persistent Threat 1","Byzantine Candor","Group 3","TG-8223"]
|
"synonyms": ["Comment Panda","PLA Unit 61398", "APT 1","Advanced Persistent Threat 1","Byzantine Candor","Group 3","TG-8223"]
|
||||||
},
|
},
|
||||||
{
|
{
|
||||||
|
"group": "Stalker Panda",
|
||||||
|
"country": "CN"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"group": "Predator Panda",
|
||||||
|
"country": "CN"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"group": "Dizzy Panda",
|
||||||
|
"synonyms": ["LadyBoyle"]
|
||||||
|
},
|
||||||
|
{
|
||||||
"group": "Putter Panda",
|
"group": "Putter Panda",
|
||||||
"refs": ["http://cdn0.vox-cdn.com/assets/4589853/crowdstrike-intelligence-report-putter-panda.original.pdf"],
|
"refs": ["http://cdn0.vox-cdn.com/assets/4589853/crowdstrike-intelligence-report-putter-panda.original.pdf"],
|
||||||
"country": "CN",
|
"country": "CN",
|
||||||
|
@ -84,7 +96,8 @@
|
||||||
},
|
},
|
||||||
{
|
{
|
||||||
"group": "Stone Panda",
|
"group": "Stone Panda",
|
||||||
"country": "CN"
|
"country": "CN",
|
||||||
|
"synonyms": ["APT10","APT 10","menuPass","happyyongzi","POTASSIUM"]
|
||||||
},
|
},
|
||||||
{
|
{
|
||||||
"group": "Nightshade Panda",
|
"group": "Nightshade Panda",
|
||||||
|
@ -123,7 +136,12 @@
|
||||||
"group": "Ice Fog",
|
"group": "Ice Fog",
|
||||||
"refs": ["https://securelist.com/blog/research/57331/the-icefog-apt-a-tale-of-cloak-and-three-daggers/"],
|
"refs": ["https://securelist.com/blog/research/57331/the-icefog-apt-a-tale-of-cloak-and-three-daggers/"],
|
||||||
"country": "CN",
|
"country": "CN",
|
||||||
"synomyns": ["IceFog"]
|
"synomyns": ["IceFog","Dagger Panda"]
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"group": "Pitty Panda",
|
||||||
|
"country": "CN",
|
||||||
|
"synonyms": ["PittyTiger", "MANGANESE"]
|
||||||
},
|
},
|
||||||
{
|
{
|
||||||
"group": "HiddenLynx",
|
"group": "HiddenLynx",
|
||||||
|
@ -186,6 +204,11 @@
|
||||||
"country": "IR"
|
"country": "IR"
|
||||||
},
|
},
|
||||||
{
|
{
|
||||||
|
"group": "Rebel Jackal",
|
||||||
|
"synonyms": ["FallagaTeam"],
|
||||||
|
"country": "TN"
|
||||||
|
},
|
||||||
|
{
|
||||||
"group": "Viking Jackal",
|
"group": "Viking Jackal",
|
||||||
"synonyms": ["Vikingdom"],
|
"synonyms": ["Vikingdom"],
|
||||||
"country": "AE"
|
"country": "AE"
|
||||||
|
@ -236,6 +259,10 @@
|
||||||
"refs": ["http://www.welivesecurity.com/2015/11/11/operathion-buhtrap-malware-distributed-via-ammyy-com/"],
|
"refs": ["http://www.welivesecurity.com/2015/11/11/operathion-buhtrap-malware-distributed-via-ammyy-com/"],
|
||||||
"country": "RU",
|
"country": "RU",
|
||||||
"synonyms": [""]
|
"synonyms": [""]
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"group": "Berserk Bear",
|
||||||
|
"country": "RU"
|
||||||
}
|
}
|
||||||
]
|
]
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in a new issue