Trusted Design

Callisto Group

概要

The Callisto Group is an advanced threat actor whose known targets include military personnel, government officials, think tanks, and journalists in Europe and the South Caucasus. Their primary interest appears to be gathering intelligence related to foreign and security policy in the Eastern Europe and South Caucasus regions. In October 2015 the Callisto Group targeted a handful of individuals with phishing emails that attempted to obtain the target’s webmail credentials. In early 2016 the Callisto Group began sending highly targeted spear phishing emails with malicious attachments that contained, as their final payload, the “Scout” malware tool from the HackingTeam RCS Galileo platform.

Created: 2026-02-23

Indicators

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

Contagious Interview

Score: 22.86
Matched TTPs:
  • T1588.007 - Artificial Intelligence
  • T1681 - Search Threat Vendor Data
  • T1657 - Financial Theft
  • T1583.006 - Web Services
  • T1593 - Search Open Websites/Domains
  • T1593.001 - Social Media
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Scattered Spider

Score: 19.97
Matched TTPs:
  • T1564.008 - Email Hiding Rules
  • T1069 - Permission Groups Discovery
  • T1598.003 - Spearphishing Link
  • T1598.004 - Spearphishing Voice
  • T1657 - Financial Theft
  • T1598 - Phishing for Information
MITREへのリンク →

FIN4

Score: 4.13
Matched TTPs:
  • T1564.008 - Email Hiding Rules
MITREへのリンク →

Ember Bear

Score: 5.63
Matched TTPs:
  • T1491.002 - External Defacement
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Sandworm Team

Score: 21.46
Matched TTPs:
  • T1491.002 - External Defacement
  • T1598.003 - Spearphishing Link
  • T1591.002 - Business Relationships
  • T1593 - Search Open Websites/Domains
  • T1592.002 - Software
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

APT41

Score: 4.78
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

TA505

Score: 3.29
Matched TTPs:
  • T1069 - Permission Groups Discovery
MITREへのリンク →

Volt Typhoon

Score: 20.44
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1591 - Gather Victim Org Information
  • T1593 - Search Open Websites/Domains
  • T1614 - System Location Discovery
  • T1591.004 - Identify Roles
  • T1680 - Local Storage Discovery
MITREへのリンク →

APT3

Score: 4.78
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

FIN13

Score: 5.81
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1657 - Financial Theft
MITREへのリンク →

Sidewinder

Score: 7.57
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1598.002 - Spearphishing Attachment
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Mustang Panda

Score: 13.38
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1583.006 - Web Services
  • T1593 - Search Open Websites/Domains
  • T1203 - Exploitation for Client Execution
  • T1027.007 - Dynamic API Resolution
MITREへのリンク →

ZIRCONIUM

Score: 10.31
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1583.006 - Web Services
  • T1102.002 - Bidirectional Communication
  • T1598 - Phishing for Information
MITREへのリンク →

APT32

Score: 8.63
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1583.006 - Web Services
  • T1203 - Exploitation for Client Execution
  • T1078.003 - Local Accounts
MITREへのリンク →

Kimsuky

Score: 35.65
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1657 - Financial Theft
  • T1583.006 - Web Services
  • T1591 - Gather Victim Org Information
  • T1534 - Internal Spearphishing
  • T1593 - Search Open Websites/Domains
  • T1566 - Phishing
  • T1593.001 - Social Media
  • T1102.002 - Bidirectional Communication
  • T1598 - Phishing for Information
  • T1680 - Local Storage Discovery
  • T1078.003 - Local Accounts
MITREへのリンク →

Magic Hound

Score: 17.77
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1583.006 - Web Services
  • T1592.002 - Software
  • T1102.002 - Bidirectional Communication
  • T1591.001 - Determine Physical Locations
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

APT28

Score: 19.22
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1583.006 - Web Services
  • T1591 - Gather Victim Org Information
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
  • T1598 - Phishing for Information
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

Star Blizzard

Score: 9.37
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1598.002 - Spearphishing Attachment
  • T1593 - Search Open Websites/Domains
MITREへのリンク →

Moonstone Sleet

Score: 11.71
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1591 - Gather Victim Org Information
  • T1598 - Phishing for Information
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

CURIUM

Score: 4.98
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Dragonfly

Score: 11.42
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1591.002 - Business Relationships
  • T1598.002 - Spearphishing Attachment
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Patchwork

Score: 6.79
Matched TTPs:
  • T1598.003 - Spearphishing Link
  • T1203 - Exploitation for Client Execution
  • T1680 - Local Storage Discovery
MITREへのリンク →

Medusa Group

Score: 15.95
Matched TTPs:
  • T1608.002 - Upload Tool
  • T1657 - Financial Theft
  • T1583.006 - Web Services
  • T1573.002 - Asymmetric Cryptography
  • T1218.014 - MMC
MITREへのリンク →

Threat Group-3390

Score: 5.63
Matched TTPs:
  • T1608.002 - Upload Tool
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

UNC3886

Score: 5.63
Matched TTPs:
  • T1681 - Search Threat Vendor Data
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

LAPSUS$

Score: 11.60
Matched TTPs:
  • T1598.004 - Spearphishing Voice
  • T1591.002 - Business Relationships
  • T1591.004 - Identify Roles
MITREへのリンク →

HAFNIUM

Score: 9.22
Matched TTPs:
  • T1592.004 - Client Configurations
  • T1583.006 - Web Services
  • T1078.003 - Local Accounts
MITREへのリンク →

INC Ransom

Score: 5.81
Matched TTPs:
  • T1657 - Financial Theft
  • T1566 - Phishing
MITREへのリンク →

AppleJeus

Score: 5.81
Matched TTPs:
  • T1657 - Financial Theft
  • T1566 - Phishing
MITREへのリンク →

Play

Score: 5.19
Matched TTPs:
  • T1657 - Financial Theft
  • T1078.003 - Local Accounts
MITREへのリンク →

Turla

Score: 14.54
Matched TTPs:
  • T1583.006 - Web Services
  • T1201 - Password Policy Discovery
  • T1102.002 - Bidirectional Communication
  • T1555.004 - Windows Credential Manager
  • T1078.003 - Local Accounts
MITREへのリンク →

MuddyWater

Score: 5.90
Matched TTPs:
  • T1583.006 - Web Services
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

APT29

Score: 8.69
Matched TTPs:
  • T1583.006 - Web Services
  • T1203 - Exploitation for Client Execution
  • T1566.003 - Spearphishing via Service
  • T1078.003 - Local Accounts
MITREへのリンク →

FIN7

Score: 13.98
Matched TTPs:
  • T1583.006 - Web Services
  • T1591 - Gather Victim Org Information
  • T1102.002 - Bidirectional Communication
  • T1591.004 - Identify Roles
  • T1078.003 - Local Accounts
MITREへのリンク →

Lazarus Group

Score: 18.68
Matched TTPs:
  • T1583.006 - Web Services
  • T1591 - Gather Victim Org Information
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
  • T1027.007 - Dynamic API Resolution
  • T1680 - Local Storage Discovery
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Confucius

Score: 6.34
Matched TTPs:
  • T1583.006 - Web Services
  • T1203 - Exploitation for Client Execution
  • T1680 - Local Storage Discovery
MITREへのリンク →

Gamaredon Group

Score: 8.03
Matched TTPs:
  • T1583.006 - Web Services
  • T1534 - Internal Spearphishing
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

Saint Bear

Score: 3.51
Matched TTPs:
  • T1583.006 - Web Services
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

POLONIUM

Score: 4.41
Matched TTPs:
  • T1583.006 - Web Services
  • T1102.002 - Bidirectional Communication
MITREへのリンク →

TA2541

Score: 4.76
Matched TTPs:
  • T1583.006 - Web Services
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

SideCopy

Score: 7.75
Matched TTPs:
  • T1598.002 - Spearphishing Attachment
  • T1614 - System Location Discovery
MITREへのリンク →

APT33

Score: 5.63
Matched TTPs:
  • T1552.006 - Group Policy Preferences
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Wizard Spider

Score: 7.75
Matched TTPs:
  • T1552.006 - Group Policy Preferences
  • T1555.004 - Windows Credential Manager
MITREへのリンク →

Leviathan

Score: 5.12
Matched TTPs:
  • T1534 - Internal Spearphishing
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

HEXANE

Score: 9.64
Matched TTPs:
  • T1534 - Internal Spearphishing
  • T1102.002 - Bidirectional Communication
  • T1591.004 - Identify Roles
MITREへのリンク →

Sea Turtle

Score: 7.44
Matched TTPs:
  • T1566 - Phishing
  • T1203 - Exploitation for Client Execution
  • T1078.003 - Local Accounts
MITREへのリンク →

Axiom

Score: 4.78
Matched TTPs:
  • T1566 - Phishing
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

GOLD SOUTHFIELD

Score: 3.29
Matched TTPs:
  • T1566 - Phishing
MITREへのリンク →

OilRig

Score: 14.23
Matched TTPs:
  • T1201 - Password Policy Discovery
  • T1203 - Exploitation for Client Execution
  • T1573.002 - Asymmetric Cryptography
  • T1555.004 - Windows Credential Manager
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Chimera

Score: 6.68
Matched TTPs:
  • T1201 - Password Policy Discovery
  • T1680 - Local Storage Discovery
MITREへのリンク →

Andariel

Score: 5.34
Matched TTPs:
  • T1592.002 - Software
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Storm-1811

Score: 11.60
Matched TTPs:
  • T1566.004 - Spearphishing Voice
  • T1667 - Email Bombing
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

EXOTIC LILY

Score: 7.86
Matched TTPs:
  • T1593.001 - Social Media
  • T1203 - Exploitation for Client Execution
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

APT37

Score: 3.89
Matched TTPs:
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

APT12

Score: 3.89
Matched TTPs:
  • T1102.002 - Bidirectional Communication
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Higaisa

Score: 4.33
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1680 - Local Storage Discovery
MITREへのリンク →

Cobalt Group

Score: 4.24
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1573.002 - Asymmetric Cryptography
MITREへのリンク →

Tropic Trooper

Score: 9.74
Matched TTPs:
  • T1203 - Exploitation for Client Execution
  • T1573.002 - Asymmetric Cryptography
  • T1680 - Local Storage Discovery
  • T1078.003 - Local Accounts
MITREへのリンク →

Velvet Ant

Score: 9.54
Matched TTPs:
  • T1573.002 - Asymmetric Cryptography
  • T1078.003 - Local Accounts
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

FIN6

Score: 5.27
Matched TTPs:
  • T1573.002 - Asymmetric Cryptography
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Stealth Falcon

Score: 3.62
Matched TTPs:
  • T1555.004 - Windows Credential Manager
MITREへのリンク →

Equation

Score: 4.13
Matched TTPs:
  • T1564.005 - Hidden File System
MITREへのリンク →

Strider

Score: 4.13
Matched TTPs:
  • T1564.005 - Hidden File System
MITREへのリンク →

ToddyCat

Score: 5.36
Matched TTPs:
  • T1680 - Local Storage Discovery
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

Kimsuky

Score: 0.84
Matched TTPs:
  • T1591 - Gather Victim Org Information
  • T1680 - Local Storage Discovery
  • T1598.003 - Spearphishing Link
  • T1583.006 - Web Services
  • T1593.001 - Social Media
  • T1657 - Financial Theft
  • T1566 - Phishing
  • T1102.002 - Bidirectional Communication
  • T1534 - Internal Spearphishing
  • T1078.003 - Local Accounts
  • T1593 - Search Open Websites/Domains
  • T1598 - Phishing for Information
MITREへのリンク →

Sandworm Team

Score: 0.57
Matched TTPs:
  • T1592.002 - Software
  • T1598.003 - Spearphishing Link
  • T1591.002 - Business Relationships
  • T1491.002 - External Defacement
  • T1102.002 - Bidirectional Communication
  • T1593 - Search Open Websites/Domains
  • T1203 - Exploitation for Client Execution
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る