ChinaWidely attributedUnknownMITRE G0018

admin@338

admin@338 is a China-based cyber threat group. It has previously used newsworthy events as lures to deliver malware and has primarily targeted organizations involved in financial, economic, and trade policy, typically using publicly available RATs such as PoisonIvy, as well as some non-public backdoors.

Attribution signal

?Score = mentions × confidence weight, summed across all attributed sources. Higher source diversity increases the score.≥ 10 High≥ 3 Moderate< 3 Low
0.0
None signal strength
Mentions0
Sources0
High conf.0
First observed
2017-05-31
Last active
Origin
China
Aliases
1
Techniques
12
Campaigns
0
China

Attribution signals

No attribution signals extracted yet — signals populate automatically as articles are processed.