Link Search Menu Expand Document

APT28


State-backed: Russia

Associated Groups : SNAKEMACKEREL, Swallowtail, Group 74, Sednit, Sofacy, Pawn Storm, Fancy Bear, STRONTIUM, Tsar Team, Threat Group-4127, TG-4127

Estimated time of origin: 2011

Target: Goverments of Georgia & other Eastern Europe.

Strategy : Targeted email spear phishing.

Malwares:

Noteworthy:

  • Targeting Georgian goverment & other Eastern Europe goverments.
  • Reportedly compromised the Hillary Clinton campaign

Reference


FireEye: APT28: A WINDOW INTO RUSSIA’S CYBER ESPIONAGE OPERATIONS? MITRE ATT&CK Contagio blog