APT
2025
2026(2)
2025(51)
2024(29)
APT Group
Co je APT
Historie
Hrozba
Charakteristika APT
1.Fáze
2.Fáze
3.Fáze
4.Fáze
Životní cyklus APT
Jak detekovat APT útok
Obrana proti APT
APT Tutoriál
DATE |
NAME |
INFO |
CATEGORY |
SUBCATEGORIES |
| 31.12.25 | Silver Fox | Silver Fox Targeting India Using Tax Themed Phishing Lures | APT | APT |
| 31.12.25 | HoneyMyte | The HoneyMyte APT evolves with a kernel-mode rootkit and a ToneShell backdoor | APT | APT |
| 27.12.25 | Panda APT | The Evasive Panda APT group (also known as Bronze Highland, Daggerfly, and StormBamboo) has been active since 2012, targeting multiple industries with sophisticated, evolving tactics. Our latest research (June 2025) reveals that the attackers conducted highly-targeted campaigns, which started in November 2022 and ran until November 2024. | APT | APT |
|
24.12.25 |
Prince of Persia: A Decade of Iranian Nation-State APT Campaign Activity under the Microscope |
APT | APT | |
|
20.12.25 |
EXECUTIVE SUMMARY CYFIRMA is dedicated to providing advanced warning and strategic analysis of the evolving cyber threat landscape. Our latest report analyzes a targeted malware campaign attributed to APT-36, which… |
APT | APT | |
|
19.12.25 |
LongNosedGoblin tries to sniff out governmental affairs in Southeast Asia and Japan |
APT | APT | |
| 17.12.25 | Ink Dragon | Inside Ink Dragon: Revealing the Relay Network and Inner Workings of a Stealthy Offensive Operation | APT | APT |
| 13.12.25 | GROUP 123 | Group123 is a North Korean state-sponsored advanced persistent threat (APT) group active since at least 2012. It is also tracked under other names such as APT37, Reaper, and | APT | APT |
| 10.12.25 | GOLD BLADE’s | Sharpening the knife: GOLD BLADE’s strategic evolution | APT | APT |
| 10.12.25 | APT-C-08 | WinRAR CVE-2025-6218 Exploit: In-Depth Analysis of the APT-C-08 Directory Traversal Attack | APT | APT |
| 10.12.25 | Storm-0249 | Threat Spotlight: Storm-0249 Moves from Mass Phishing to Precision EDR Exploitation | APT | APT |
| 3.12.25 | ShadyPanda's | 4.3 Million Browsers Infected: Inside ShadyPanda's 7-Year Malware Campaign | APT | APT |
| 3.12.25 | MuddyWater | MuddyWater targets critical infrastructure in Israel and Egypt, relying on custom malware, improved tactics, and a predictable playbook | APT | APT |
| 2.12.25 | Tomiris | Tomiris wreaks Havoc: New tools and techniques of the APT group | APT | APT |
|
19.11.25 |
PlushDaemon | PlushDaemon compromises network devices for adversary-in-the-middle attacks | APT | APT |
|
15.11.25 |
BRONZE BUTLER, also known as Tick or REDBALDKNIGHT, is a sophisticated and persistent cyber espionage group believed to originate from China. |
APT |
GROUP |
|
| 3.11.25 | CN APT | CN APT targets Serbian Government | APT | APT |
| 1.11.25 | APT-C-60 | APT-C-60 intensified operations against Japanese organizations during Q3 2025, deploying three updated SpyGlace backdoor versions with refined tracking mechanisms, modified encryption, and sophisticated abuse of GitHub, StatCounter, and Git for stealthy malware distribution. | APT | APT |
| 1.11.25 | BRONZE BUTLER | BRONZE BUTLER exploits Japanese asset management software vulnerability | APT | APT |
| 29.10.25 | BlueNoroff | Crypto wasted: BlueNoroff’s ghost mirage of funding and jobs | APT | APT |
| 29.10.25 | Mem3nt0 mori | Mem3nt0 mori – The Hacking Team is back! | APT | APT |
| 28.10.25 | SideWinder | SideWinder's Shifting Sands: Click Once for Espionage | APT | APT |
| 25.10.25 | Gotta fly | Gotta fly: Lazarus targets the UAV sector | APT | APT |
| 25.10.25 | MuddyWater | Unmasking MuddyWater’s New Malware Toolkit Driving International Espionage | APT | APT |
|
11.10.25 |
HAFNIUM | Hafnium is a Chinese state-sponsored advanced persistent threat (APT) group, also referred to as Silk Typhoon, and is known for sophisticated cyber espionage targeting critical | APT | APT |
| 3.10.25 | Phantom Taurus | Phantom Taurus: A New Chinese Nexus APT and the Discovery of the NET-STAR Malware Suite | APT | APT |
| 20.9.25 | Subtle Snail | Subtle Snail (UNC1549) is an Iran-nexus espionage group linked to Unyielding Wasp (Tortoiseshell), which is part of the Eclipsed Wasp (Charming Kitten) network. | APT | APT |
| 19.9.25 | Gamaredon X Turla | Notorious APT group Turla collaborates with Gamaredon, both FSB-associated groups, to compromise high‑profile targets in Ukraine | APT | APT |
| 18.9.25 | RevengeHotels | RevengeHotels: a new wave of attacks leveraging LLMs and VenomRAT | APT | APT |
| 18.9.25 | TA415 | Going Underground: China-aligned TA415 Conducts U.S.-China Economic Relations Targeting Using VS Code Remote Tunnels | APT | APT |
| 15.9.25 | Cyberspike Villager | Cyberspike Villager – Cobalt Strike’s AI-native Successor | APT | APT |
| 9.9.25 | Salt Typhoon and UNC4841 | Salt Typhoon and UNC4841: Silent Push Discovers New Domains; Urges Defenders to Check Telemetry and Log Data | APT | APT |
| 5.9.25 | APT28 | Analyzing NotDoor: Inside APT28’s Expanding Arsenal | APT | APT |
| 4.9.25 | Lazarus RATs | Three Lazarus RATs coming for your cheese | APT | APT |
| 2.9.25 | Silver Fox | Chasing the Silver Fox: Cat & Mouse in Kernel Shadows | APT | APT |
| 30.8.25 | APT36 | APT36: Targets Indian BOSS Linux Systems with Weaponized AutoStart Files | APT | APT |
| 29.8.25 | APT29 | Amazon disrupts watering hole campaign by Russia’s APT29 | APT | APT |
| 17.8.25 | EncryptHub | When Hackers Call: Social Engineering, Abusing Brave Support, and EncryptHub’s Expanding Arsenal | APT | APT |
| 20.6.25 | APT29 | What’s in an ASP? Creative Phishing Attack on Prominent Academics and Critics of Russia | APT | APT |
| 14.6.25 | APT PROFILE – MISSION2025 | MISSION2025 is a Chinese state-sponsored advanced persistent threat (APT) group linked to APT41. Active since at least 2012, the group has conducted cyberespionage and | APT | APT |
| 10.6.25 | Rare Werewolf | Sleep with one eye open: how Librarian Ghouls steal data by night | APT | APT |
| 5.6.25 | BladedFeline | ESET researchers analyzed a cyberespionage campaign conducted by BladedFeline, an Iran-aligned APT group with likely ties to OilRig | APT | APT |
| 29.5.25 | APT41 Innovative Tactics | Mark Your Calendar: APT41 Innovative Tactics | APT | APT |
| 14.5.24 | Swan Vector | Unveiling Swan Vector APT Targeting Taiwan and Japan with varied DLL Implants | APT | APT |
| 19.4.25 | Earth Estries | Earth Estries is a Chinese Advanced Persistent Threat (APT) group that has gained prominence for its sophisticated cyber espionage activities targeting critical infrastructure and government entities globally. | APT | APT |
|
27.3.25 |
APT36 TURNING AID INTO ATTACK | TURNING AID INTO ATTACK: EXPLOITATION OF PAKISTAN’S YOUTH LAPTOP SCHEME TO TARGET INDIA | APT | APT |
| 12.3.25 | Blind Eagle: | Blind Eagle: …And Justice for All | APT | APT |
| 11.3.25 | SideWinder | SideWinder targets the maritime and nuclear sectors with an updated toolset | APT | APT |
| 28.2.25 | Angry Likho | Angry Likho: Old beasts in a new forest | APT | APT |
| 22.2.25 | Earth Preta | Earth Preta Mixes Legitimate and Malicious Components to Sidestep Detection | APT | APT |
| 5.2.25 | Silent Lynx | Silent Lynx APT Targets Various Entities Across Kyrgyzstan & Neighbouring Nations | APT | APT |