Trusted Design

Tracking NSO Group’s Pegasus Spyware to Operations in 45 Countries

概要

Israel-based “Cyber Warfare” vendor NSO Group produces and sells a mobile phone spyware suite called Pegasus. To monitor a target, a government operator of Pegasus must convince the target to click on a specially crafted exploit link, which, when clicked, delivers a chain of zero-day exploits to penetrate security features on the phone and installs Pegasus without the user’s knowledge or permission. Once the phone is exploited and Pegasus is installed, it begins contacting the operator’s command and control (C&C) servers to receive and execute operators’ commands, and send back the target’s private data, including passwords, contact lists, calendar events, text messages, and live voice calls from popular mobile messaging apps. The operator can even turn on the phone’s camera and microphone to capture activity in the phone’s vicinity.

Created: 2026-02-23

Indicators

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

Kimsuky

Score: 36.36
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1007 - System Service Discovery
  • T1040 - Network Sniffing
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1071.003 - Mail Protocols
  • T1102.002 - Bidirectional Communication
  • T1598 - Phishing for Information
  • T1219.002 - Remote Desktop Software
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1680 - Local Storage Discovery
  • T1588.005 - Exploits
  • T1102.001 - Dead Drop Resolver
MITREへのリンク →

Sea Turtle

Score: 5.69
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1190 - Exploit Public-Facing Application
  • T1071.001 - Web Protocols
MITREへのリンク →

Ember Bear

Score: 18.15
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1005 - Data from Local System
  • T1195 - Supply Chain Compromise
  • T1190 - Exploit Public-Facing Application
  • T1588.001 - Malware
  • T1046 - Network Service Discovery
  • T1588.005 - Exploits
MITREへのリンク →

Indrik Spider

Score: 8.39
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1007 - System Service Discovery
  • T1584.004 - Server
MITREへのリンク →

Agrius

Score: 7.72
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1046 - Network Service Discovery
MITREへのリンク →

Contagious Interview

Score: 20.01
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1071.003 - Mail Protocols
  • T1681 - Search Threat Vendor Data
  • T1219.002 - Remote Desktop Software
  • T1204.001 - Malicious Link
  • T1566.003 - Spearphishing via Service
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

Sandworm Team

Score: 24.45
Matched TTPs:
  • T1583 - Acquire Infrastructure
  • T1040 - Network Sniffing
  • T1005 - Data from Local System
  • T1195 - Supply Chain Compromise
  • T1190 - Exploit Public-Facing Application
  • T1592.002 - Software
  • T1102.002 - Bidirectional Communication
  • T1071.001 - Web Protocols
  • T1584.004 - Server
  • T1204.001 - Malicious Link
MITREへのリンク →

Star Blizzard

Score: 3.03
Matched TTPs:
  • T1583 - Acquire Infrastructure
MITREへのリンク →

APT28

Score: 30.02
Matched TTPs:
  • T1110.001 - Password Guessing
  • T1040 - Network Sniffing
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1071.003 - Mail Protocols
  • T1102.002 - Bidirectional Communication
  • T1598 - Phishing for Information
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1550.001 - Application Access Token
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

APT29

Score: 23.63
Matched TTPs:
  • T1110.001 - Password Guessing
  • T1005 - Data from Local System
  • T1586.003 - Cloud Accounts
  • T1190 - Exploit Public-Facing Application
  • T1573 - Encrypted Channel
  • T1651 - Cloud Administration Command
  • T1204.001 - Malicious Link
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

LAPSUS$

Score: 16.42
Matched TTPs:
  • T1597.002 - Purchase Technical Data
  • T1005 - Data from Local System
  • T1598.004 - Spearphishing Voice
  • T1588.001 - Malware
  • T1213.005 - Messaging Applications
MITREへのリンク →

APT41

Score: 14.84
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1569.002 - Service Execution
  • T1102.001 - Dead Drop Resolver
MITREへのリンク →

Scattered Spider

Score: 23.53
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1552.004 - Private Keys
  • T1598.004 - Spearphishing Voice
  • T1588.001 - Malware
  • T1598 - Phishing for Information
  • T1219.002 - Remote Desktop Software
  • T1213.005 - Messaging Applications
MITREへのリンク →

TA505

Score: 8.29
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1588.001 - Malware
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
MITREへのリンク →

Volt Typhoon

Score: 24.13
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1007 - System Service Discovery
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1552.004 - Private Keys
  • T1590.006 - Network Security Appliances
  • T1584.004 - Server
  • T1046 - Network Service Discovery
  • T1680 - Local Storage Discovery
MITREへのリンク →

APT3

Score: 6.09
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1005 - Data from Local System
  • T1204.001 - Malicious Link
MITREへのリンク →

FIN13

Score: 9.16
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
MITREへのリンク →

HAFNIUM

Score: 16.62
Matched TTPs:
  • T1583.005 - Botnet
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1592.004 - Client Configurations
  • T1071.001 - Web Protocols
  • T1550.001 - Application Access Token
MITREへのリンク →

APT5

Score: 5.31
Matched TTPs:
  • T1583.005 - Botnet
  • T1190 - Exploit Public-Facing Application
MITREへのリンク →

Ke3chang

Score: 12.87
Matched TTPs:
  • T1583.005 - Botnet
  • T1007 - System Service Discovery
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1071.001 - Web Protocols
  • T1569.002 - Service Execution
MITREへのリンク →

BRONZE BUTLER

Score: 8.44
Matched TTPs:
  • T1007 - System Service Discovery
  • T1005 - Data from Local System
  • T1071.001 - Web Protocols
  • T1102.001 - Dead Drop Resolver
MITREへのリンク →

TeamTNT

Score: 21.84
Matched TTPs:
  • T1007 - System Service Discovery
  • T1071 - Application Layer Protocol
  • T1552.004 - Private Keys
  • T1102 - Web Service
  • T1048 - Exfiltration Over Alternative Protocol
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1680 - Local Storage Discovery
MITREへのリンク →

OilRig

Score: 21.94
Matched TTPs:
  • T1007 - System Service Discovery
  • T1005 - Data from Local System
  • T1195 - Supply Chain Compromise
  • T1137.004 - Outlook Home Page
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1204.001 - Malicious Link
  • T1566.003 - Spearphishing via Service
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

Turla

Score: 20.02
Matched TTPs:
  • T1007 - System Service Discovery
  • T1005 - Data from Local System
  • T1071.003 - Mail Protocols
  • T1588.001 - Malware
  • T1102 - Web Service
  • T1102.002 - Bidirectional Communication
  • T1071.001 - Web Protocols
  • T1584.004 - Server
  • T1204.001 - Malicious Link
MITREへのリンク →

Aquatic Panda

Score: 6.43
Matched TTPs:
  • T1007 - System Service Discovery
  • T1005 - Data from Local System
  • T1588.001 - Malware
MITREへのリンク →

Chimera

Score: 10.71
Matched TTPs:
  • T1007 - System Service Discovery
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1569.002 - Service Execution
  • T1680 - Local Storage Discovery
MITREへのリンク →

Earth Lusca

Score: 10.64
Matched TTPs:
  • T1007 - System Service Discovery
  • T1190 - Exploit Public-Facing Application
  • T1588.001 - Malware
  • T1584.004 - Server
  • T1204.001 - Malicious Link
MITREへのリンク →

APT1

Score: 6.43
Matched TTPs:
  • T1007 - System Service Discovery
  • T1005 - Data from Local System
  • T1588.001 - Malware
MITREへのリンク →

Velvet Ant

Score: 13.00
Matched TTPs:
  • T1040 - Network Sniffing
  • T1071 - Application Layer Protocol
  • T1569.002 - Service Execution
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

Salt Typhoon

Score: 11.79
Matched TTPs:
  • T1040 - Network Sniffing
  • T1190 - Exploit Public-Facing Application
  • T1602.002 - Network Device Configuration Dump
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

APT33

Score: 12.46
Matched TTPs:
  • T1040 - Network Sniffing
  • T1552.006 - Group Policy Preferences
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

UNC3886

Score: 15.63
Matched TTPs:
  • T1040 - Network Sniffing
  • T1190 - Exploit Public-Facing Application
  • T1681 - Search Threat Vendor Data
  • T1548 - Abuse Elevation Control Mechanism
  • T1588.001 - Malware
MITREへのリンク →

DarkVishnya

Score: 9.34
Matched TTPs:
  • T1040 - Network Sniffing
  • T1200 - Hardware Additions
  • T1046 - Network Service Discovery
MITREへのリンク →

Magic Hound

Score: 23.06
Matched TTPs:
  • T1071 - Application Layer Protocol
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1573 - Encrypted Channel
  • T1592.002 - Software
  • T1102.002 - Bidirectional Communication
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1204.001 - Malicious Link
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Rocke

Score: 17.11
Matched TTPs:
  • T1071 - Application Layer Protocol
  • T1190 - Exploit Public-Facing Application
  • T1552.004 - Private Keys
  • T1102 - Web Service
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1102.001 - Dead Drop Resolver
MITREへのリンク →

INC Ransom

Score: 9.07
Matched TTPs:
  • T1071 - Application Layer Protocol
  • T1190 - Exploit Public-Facing Application
  • T1046 - Network Service Discovery
  • T1569.002 - Service Execution
MITREへのリンク →

APT39

Score: 15.87
Matched TTPs:
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1056 - Input Capture
  • T1102.002 - Bidirectional Communication
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1204.001 - Malicious Link
  • T1569.002 - Service Execution
MITREへのリンク →

Axiom

Score: 7.45
Matched TTPs:
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1001.002 - Steganography
MITREへのリンク →

ToddyCat

Score: 8.27
Matched TTPs:
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1680 - Local Storage Discovery
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Fox Kitten

Score: 11.05
Matched TTPs:
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1102 - Web Service
  • T1046 - Network Service Discovery
  • T1213.005 - Messaging Applications
MITREへのリンク →

Andariel

Score: 7.75
Matched TTPs:
  • T1005 - Data from Local System
  • T1588.001 - Malware
  • T1592.002 - Software
MITREへのリンク →

RedCurl

Score: 8.28
Matched TTPs:
  • T1005 - Data from Local System
  • T1102 - Web Service
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1204.001 - Malicious Link
MITREへのリンク →

Lazarus Group

Score: 17.73
Matched TTPs:
  • T1005 - Data from Local System
  • T1102.002 - Bidirectional Communication
  • T1071.001 - Web Protocols
  • T1584.004 - Server
  • T1046 - Network Service Discovery
  • T1680 - Local Storage Discovery
  • T1566.003 - Spearphishing via Service
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

Gamaredon Group

Score: 13.05
Matched TTPs:
  • T1005 - Data from Local System
  • T1102 - Web Service
  • T1102.003 - One-Way Communication
  • T1102.002 - Bidirectional Communication
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
MITREへのリンク →

FIN6

Score: 13.40
Matched TTPs:
  • T1005 - Data from Local System
  • T1102 - Web Service
  • T1046 - Network Service Discovery
  • T1569.002 - Service Execution
  • T1566.003 - Spearphishing via Service
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

LuminousMoth

Score: 6.45
Matched TTPs:
  • T1005 - Data from Local System
  • T1588.001 - Malware
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
MITREへのリンク →

APT37

Score: 5.03
Matched TTPs:
  • T1005 - Data from Local System
  • T1102.002 - Bidirectional Communication
  • T1071.001 - Web Protocols
MITREへのリンク →

Dragonfly

Score: 5.75
Matched TTPs:
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1584.004 - Server
MITREへのリンク →

CURIUM

Score: 3.97
Matched TTPs:
  • T1005 - Data from Local System
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Inception

Score: 5.16
Matched TTPs:
  • T1005 - Data from Local System
  • T1102 - Web Service
  • T1071.001 - Web Protocols
MITREへのリンク →

Patchwork

Score: 8.93
Matched TTPs:
  • T1005 - Data from Local System
  • T1204.001 - Malicious Link
  • T1680 - Local Storage Discovery
  • T1102.001 - Dead Drop Resolver
MITREへのリンク →

Threat Group-3390

Score: 5.87
Matched TTPs:
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
MITREへのリンク →

FIN7

Score: 13.61
Matched TTPs:
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1674 - Input Injection
  • T1102.002 - Bidirectional Communication
  • T1204.001 - Malicious Link
  • T1569.002 - Service Execution
MITREへのリンク →

APT38

Score: 6.39
Matched TTPs:
  • T1005 - Data from Local System
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1569.002 - Service Execution
MITREへのリンク →

menuPass

Score: 4.68
Matched TTPs:
  • T1005 - Data from Local System
  • T1190 - Exploit Public-Facing Application
  • T1046 - Network Service Discovery
MITREへのリンク →

Wizard Spider

Score: 13.27
Matched TTPs:
  • T1005 - Data from Local System
  • T1552.006 - Group Policy Preferences
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1569.002 - Service Execution
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

Dark Caracal

Score: 5.16
Matched TTPs:
  • T1005 - Data from Local System
  • T1071.001 - Web Protocols
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

BackdoorDiplomacy

Score: 5.69
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1588.001 - Malware
  • T1046 - Network Service Discovery
MITREへのリンク →

BlackTech

Score: 4.60
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1046 - Network Service Discovery
  • T1204.001 - Malicious Link
MITREへのリンク →

Medusa Group

Score: 6.82
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1569.002 - Service Execution
MITREへのリンク →

Storm-0501

Score: 7.84
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1552.004 - Private Keys
  • T1219.002 - Remote Desktop Software
MITREへのリンク →

BlackByte

Score: 6.82
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1569.002 - Service Execution
MITREへのリンク →

Blue Mockingbird

Score: 3.87
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1569.002 - Service Execution
MITREへのリンク →

Winter Vivern

Score: 4.02
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
MITREへのリンク →

Leviathan

Score: 9.80
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1102.003 - One-Way Communication
  • T1584.004 - Server
  • T1204.001 - Malicious Link
MITREへのリンク →

Play

Score: 5.60
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1048 - Exfiltration Over Alternative Protocol
MITREへのリンク →

MuddyWater

Score: 6.42
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1102.002 - Bidirectional Communication
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
MITREへのリンク →

SilverTerrier

Score: 4.47
Matched TTPs:
  • T1071.003 - Mail Protocols
  • T1071.001 - Web Protocols
MITREへのリンク →

APT32

Score: 15.27
Matched TTPs:
  • T1071.003 - Mail Protocols
  • T1102 - Web Service
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1204.001 - Malicious Link
  • T1569.002 - Service Execution
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

TA2541

Score: 3.82
Matched TTPs:
  • T1588.001 - Malware
  • T1204.001 - Malicious Link
MITREへのリンク →

Metador

Score: 3.65
Matched TTPs:
  • T1588.001 - Malware
  • T1071.001 - Web Protocols
MITREへのリンク →

LazyScripter

Score: 6.34
Matched TTPs:
  • T1588.001 - Malware
  • T1102 - Web Service
  • T1204.001 - Malicious Link
MITREへのリンク →

FIN8

Score: 7.82
Matched TTPs:
  • T1102 - Web Service
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

EXOTIC LILY

Score: 6.41
Matched TTPs:
  • T1102 - Web Service
  • T1204.001 - Malicious Link
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

APT42

Score: 7.56
Matched TTPs:
  • T1102 - Web Service
  • T1056 - Input Capture
  • T1071.001 - Web Protocols
MITREへのリンク →

Mustang Panda

Score: 12.51
Matched TTPs:
  • T1102 - Web Service
  • T1219.002 - Remote Desktop Software
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1204.001 - Malicious Link
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

Tropic Trooper

Score: 9.41
Matched TTPs:
  • T1573 - Encrypted Channel
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1680 - Local Storage Discovery
MITREへのリンク →

BITTER

Score: 4.81
Matched TTPs:
  • T1573 - Encrypted Channel
  • T1071.001 - Web Protocols
MITREへのリンク →

Storm-1811

Score: 13.83
Matched TTPs:
  • T1056 - Input Capture
  • T1566.004 - Spearphishing Voice
  • T1219.002 - Remote Desktop Software
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

ZIRCONIUM

Score: 7.20
Matched TTPs:
  • T1102.002 - Bidirectional Communication
  • T1598 - Phishing for Information
  • T1204.001 - Malicious Link
MITREへのリンク →

Moonstone Sleet

Score: 9.55
Matched TTPs:
  • T1598 - Phishing for Information
  • T1071.001 - Web Protocols
  • T1569.002 - Service Execution
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Evilnum

Score: 4.29
Matched TTPs:
  • T1219.002 - Remote Desktop Software
  • T1204.001 - Malicious Link
MITREへのリンク →

Thrip

Score: 5.67
Matched TTPs:
  • T1219.002 - Remote Desktop Software
  • T1048.003 - Exfiltration Over Unencrypted Non-C2 Protocol
MITREへのリンク →

RTM

Score: 6.21
Matched TTPs:
  • T1219.002 - Remote Desktop Software
  • T1102.001 - Dead Drop Resolver
MITREへのリンク →

Daggerfly

Score: 5.38
Matched TTPs:
  • T1071.001 - Web Protocols
  • T1584.004 - Server
  • T1204.001 - Malicious Link
MITREへのリンク →

Higaisa

Score: 4.02
Matched TTPs:
  • T1071.001 - Web Protocols
  • T1680 - Local Storage Discovery
MITREへのリンク →

Confucius

Score: 5.38
Matched TTPs:
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1680 - Local Storage Discovery
MITREへのリンク →

Windshift

Score: 5.07
Matched TTPs:
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Cobalt Group

Score: 4.31
Matched TTPs:
  • T1071.001 - Web Protocols
  • T1046 - Network Service Discovery
  • T1204.001 - Malicious Link
MITREへのリンク →

Equation

Score: 4.13
Matched TTPs:
  • T1564.005 - Hidden File System
MITREへのリンク →

Strider

Score: 4.13
Matched TTPs:
  • T1564.005 - Hidden File System
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

Kimsuky

Score: 0.80
Matched TTPs:
  • T1040 - Network Sniffing
  • T1071.003 - Mail Protocols
  • T1680 - Local Storage Discovery
  • T1190 - Exploit Public-Facing Application
  • T1102.001 - Dead Drop Resolver
  • T1102.002 - Bidirectional Communication
  • T1598 - Phishing for Information
  • T1219.002 - Remote Desktop Software
  • T1005 - Data from Local System
  • T1007 - System Service Discovery
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1583 - Acquire Infrastructure
  • T1588.005 - Exploits
MITREへのリンク →

APT28

Score: 0.67
Matched TTPs:
  • T1040 - Network Sniffing
  • T1071.003 - Mail Protocols
  • T1190 - Exploit Public-Facing Application
  • T1110.001 - Password Guessing
  • T1102.002 - Bidirectional Communication
  • T1211 - Exploitation for Defense Evasion
  • T1598 - Phishing for Information
  • T1005 - Data from Local System
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1550.001 - Application Access Token
MITREへのリンク →

Volt Typhoon

Score: 0.57
Matched TTPs:
  • T1590.006 - Network Security Appliances
  • T1046 - Network Service Discovery
  • T1069 - Permission Groups Discovery
  • T1680 - Local Storage Discovery
  • T1190 - Exploit Public-Facing Application
  • T1584.004 - Server
  • T1005 - Data from Local System
  • T1552.004 - Private Keys
  • T1007 - System Service Discovery
MITREへのリンク →

Sandworm Team

Score: 0.57
Matched TTPs:
  • T1040 - Network Sniffing
  • T1592.002 - Software
  • T1190 - Exploit Public-Facing Application
  • T1584.004 - Server
  • T1102.002 - Bidirectional Communication
  • T1195 - Supply Chain Compromise
  • T1005 - Data from Local System
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1583 - Acquire Infrastructure
MITREへのリンク →

Scattered Spider

Score: 0.57
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1588.001 - Malware
  • T1598 - Phishing for Information
  • T1598.004 - Spearphishing Voice
  • T1219.002 - Remote Desktop Software
  • T1552.004 - Private Keys
  • T1213.005 - Messaging Applications
MITREへのリンク →

Magic Hound

Score: 0.56
Matched TTPs:
  • T1592.002 - Software
  • T1573 - Encrypted Channel
  • T1071 - Application Layer Protocol
  • T1046 - Network Service Discovery
  • T1190 - Exploit Public-Facing Application
  • T1102.002 - Bidirectional Communication
  • T1005 - Data from Local System
  • T1071.001 - Web Protocols
  • T1204.001 - Malicious Link
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る