APT28
State-backed: Russia
Associated Groups : SNAKEMACKEREL, Swallowtail, Group 74, Sednit, Sofacy, Pawn Storm, Fancy Bear, STRONTIUM, Tsar Team, Threat Group-4127, TG-4127
Estimated time of origin: 2011
Target: Goverments of Georgia & other Eastern Europe.
Strategy : Targeted email spear phishing.
Malwares:
Noteworthy:
- Targeting Georgian goverment & other Eastern Europe goverments.
- Reportedly compromised the Hillary Clinton campaign
Reference
FireEye: APT28: A WINDOW INTO RUSSIA’S CYBER ESPIONAGE OPERATIONS? MITRE ATT&CK Contagio blog