Bloody Wolf
0 incidentes
0 paises
0 sectores
apt UA Ultimo: -
Aliases: Stan Ghouls, APT BLOODYWOLF
Bloody Wolf, also tracked as Stan Ghouls by Kaspersky, is an advanced persistent threat group that first emerged in late 2023. The group's motivations appear to be a blend of financial gain and potential cyber espionage, with initial reports also describing them as a politically motivated hacktivist entity. A defining characteristic of Bloody Wolf is its operational evolution, having shifted from employing commodity malware like STRRAT to strategically abusing legitimate remote administration tools such as NetSupport RAT. This group is particularly known for its highly localized spear-phishing campaigns, which often involve impersonating government agencies to enhance credibility.
Canales, DLS e infraestructura asociada
Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.
| Tipo | Estado | Host / enlace | Title / ultimo titulo |
| DLS / leak site | unknown | www.group-ib.com | APT BLOODYWOLF indicators and references |
| Repositorio | unknown | github.com | APT BLOODYWOLF indicators and references |
| DLS / leak site | unknown | raw.githubusercontent.com | APT BLOODYWOLF indicators and references |
Paises objetivo (SOCRadar)
BelarusKyrgyzstan
Kazakhstan
Serbia
Russian Federation
Turkey
Uzbekistan
Sectores objetivo (SOCRadar)
Energy & Utilities ManufacturingTransportation&WarehousingInformation ServicesFinanceEducational ServicesHealthCare & Social AssistanceArts & EntertainmentPublic AdministrationOther Information Services