{"Event":{"info":"OSINT -Advisory: Turla group exploits Iranian APT to expand coverage of victims","Tag":[{"colour":"#0088cc","exportable":true,"name":"misp-galaxy:mitre-enterprise-attack-intrusion-set=\"Turla\""},{"colour":"#0088cc","exportable":true,"name":"misp-galaxy:mitre-intrusion-set=\"Turla - G0010\""},{"colour":"#12e200","exportable":true,"name":"misp-galaxy:threat-actor=\"Turla Group\""},{"colour":"#0088cc","exportable":true,"name":"misp-galaxy:malpedia=\"Nautilus\""},{"colour":"#0088cc","exportable":true,"name":"misp-galaxy:malpedia=\"Neuron\""},{"colour":"#0088cc","exportable":true,"name":"misp-galaxy:tool=\"Nautilus\""},{"colour":"#0088cc","exportable":true,"name":"misp-galaxy:tool=\"Neuron\""},{"colour":"#0088cc","exportable":true,"name":"misp-galaxy:mitre-attack-pattern=\"Custom Command and Control Protocol - T1094\""},{"colour":"#004646","exportable":true,"name":"type:OSINT"},{"colour":"#0071c3","exportable":true,"name":"osint:lifetime=\"perpetual\""},{"colour":"#0087e8","exportable":true,"name":"osint:certainty=\"50\""},{"colour":"#ffffff","exportable":true,"name":"tlp:white"}],"publish_timestamp":"0","timestamp":"1572868042","analysis":"0","Attribute":[{"comment":"","category":"External analysis","uuid":"5dbae2d6-4698-4cda-9886-44d0950d210f","timestamp":"1572528854","to_ids":false,"value":"https://www.ncsc.gov.uk/news/turla-group-exploits-iran-apt-to-expand-coverage-of-victims","disable_correlation":false,"object_relation":null,"type":"link"},{"comment":"","category":"External analysis","uuid":"5dbaff2b-a9f8-4a99-b4c0-4020950d210f","timestamp":"1572536107","to_ids":false,"value":"Turla advisory UK FINAL.pdf","data":"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