A New Threat Actor Targets UAE Dissidents
概要
This report describes a campaign of targeted spyware attacks carried out by a sophisticated operator, which we call Stealth Falcon. The attacks have been conducted from 2012 until the present, against Emirati journalists, activists, and dissidents. We discovered this campaign when an individual purporting to be from an apparently fictitious organization called “The Right to Fight” contacted Rori Donaghy. Donaghy, a UK-based journalist and founder of the Emirates Center for Human Rights, received a spyware-laden email in November 2015, purporting to offer him a position on a human rights panel. Donaghy has written critically of the United Arab Emirates (UAE) government in the past,1 and had recently published a series of articles based on leaked emails involving members of the UAE government.2
Created: 2026-02-23
Indicators
Indicatorsは見つかっていない。
類似Pulses
このPulseに関連する脅威アクター (事実ベース)
Score: 11.96
Matched TTPs:
- T1564.008 - Email Hiding Rules
- T1069 - Permission Groups Discovery
- T1538 - Cloud Service Dashboard
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1564.008 - Email Hiding Rules
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1491.002 - External Defacement
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1491.002 - External Defacement
MITREへのリンク →
Score: 3.29
Matched TTPs:
- T1069 - Permission Groups Discovery
MITREへのリンク →
Score: 3.29
Matched TTPs:
- T1069 - Permission Groups Discovery
MITREへのリンク →
Score: 6.12
Matched TTPs:
- T1069 - Permission Groups Discovery
- T1680 - Local Storage Discovery
MITREへのリンク →
Score: 3.29
Matched TTPs:
- T1069 - Permission Groups Discovery
MITREへのリンク →
Score: 3.29
Matched TTPs:
- T1069 - Permission Groups Discovery
MITREへのリンク →
Score: 4.54
Matched TTPs:
- T1498 - Network Denial of Service
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1564.005 - Hidden File System
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1564.005 - Hidden File System
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1588.003 - Code Signing Certificates
MITREへのリンク →
Score: 5.67
Matched TTPs:
- T1588.003 - Code Signing Certificates
- T1566.003 - Spearphishing via Service
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1588.003 - Code Signing Certificates
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1588.003 - Code Signing Certificates
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1588.003 - Code Signing Certificates
MITREへのリンク →
Score: 3.15
Matched TTPs:
- T1588.003 - Code Signing Certificates
MITREへのリンク →
Score: 5.98
Matched TTPs:
- T1588.003 - Code Signing Certificates
- T1680 - Local Storage Discovery
MITREへのリンク →
Score: 5.36
Matched TTPs:
- T1680 - Local Storage Discovery
- T1566.003 - Spearphishing via Service
MITREへのリンク →
Score: 5.36
Matched TTPs:
- T1680 - Local Storage Discovery
- T1566.003 - Spearphishing via Service
MITREへのリンク →
このPulseに関連する脅威アクター (推論ベース)
Score: 0.79
Matched TTPs:
- T1538 - Cloud Service Dashboard
- T1069 - Permission Groups Discovery
- T1564.008 - Email Hiding Rules
MITREへのリンク →
Related CVEs
このPulseに見つかったCVEはありません。
Pulse – 脅威アクター グラフ
← Pulse一覧に戻る