United StatesWidely attributedUnknownMITRE G1020

Mustard Tempest

Mustard Tempest is an initial access broker that has operated the SocGholish distribution network since at least 2017. Mustard Tempest has partnered with Indrik Spider to provide access for the download of additional malware including LockBit, WastedLocker, and remote access tools.

Attribution signal

?Score = mentions × confidence weight, summed across all attributed sources. Higher source diversity increases the score.≥ 10 High≥ 3 Moderate< 3 Low
0.0
None signal strength
Mentions0
Sources0
High conf.0
First observed
2023-12-06
Last active
Origin
United States (cybercriminal)
Aliases
5
Techniques
12
Campaigns
0
United States (cybercriminal)

Attribution signals

No attribution signals extracted yet — signals populate automatically as articles are processed.