IndiaWidely attributedUnknownMITRE G1002

BITTER

BITTER is a suspected South Asian cyber espionage threat group that has been active since at least 2013. BITTER has targeted government, energy, and engineering organizations in Pakistan, China, Bangladesh, and Saudi Arabia.

Attribution signal

?Score = mentions × confidence weight, summed across all attributed sources. Higher source diversity increases the score.≥ 10 High≥ 3 Moderate< 3 Low
0.6
Low signal strength
Mentions1
Sources0
High conf.0
Last seenMay 2026
First observed
2022-06-01
Last active
Origin
India
Aliases
2
Techniques
16
Campaigns
0
India

Attribution signals

1 mention · 0 sources
#1linked tomoderate
VictimologyTTP match
checkpoint
May 2026

"Researchers identified a hack-for-hire campaign linked to BITTER APT that targeted journalists, activists, and government figures across the Middle East and North Africa."

Hedge terms observed

linked to