Uptime Hamster: 11d 22h 9mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Earth Kitsune

Earth Kitsune

0 incidentes 0 paises 0 sectores apt CN Ultimo: -
Ver en IntelTracker → APTTrail →
Earth Kitsune is a cyber espionage group assessed with high confidence to be a Chinese state-sponsored actor primarily motivated by the theft of valuable information. The group emerged in 2019, initially employing watering hole attacks that leveraged browser exploits, but has since evolved its tactics to include social engineering. A distinctive characteristic is their continuous evolution of self-developed malware and their persistent targeting of individuals interested in North Korea, including the Korean diaspora and pro-North Korean organizations, alongside defense contractors. While some analyses note striking similarities to malware attributed to APT37, also known as Reaper or Group 123, Earth Kitsune operates as a distinct entity.

Actores similares

Operation Earth Kitsuneapt · 0apt-earthberberokaactor · 1apt-earthhundunactor · 1apt-earthwendigoactor · 1earthkapreactor · 1Earth Luscaapt · 1earth-berberokaactor · 1earth-kapreactor · 1Earth Wendigoapt · 0Earth Estriesapt · 0
Tecnicas MITRE
T1059, T1078, T1059.001, T1071.001, T1082, T1566.001
Tipo
apt
Pais origen
CN
Motivacion
-
Impacto
12
Actualizado
Mon, 13 Ap

Sectores objetivo (SOCRadar)

Professional&Technical ServicesSpace & Defense