Uptime Hamster: 10d 9h 33mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza HIVE-0145

HIVE-0145

0 incidentes 0 paises 0 sectores apt Unknown Ultimo: -
Ver en IntelTracker → APTTrail →
HIVE-0145, also known as Hive0145, is a cybercriminal initial access broker (IAB) tracked by IBM X-Force. The group emerged in late 2022 and has since evolved its operations from generic phishing to advanced attachment hijacking. Its primary motivation is financial gain, specializing in stealing email credentials to sell access or enable further attacks, such as business email compromise (BEC). What sets this group apart is its exclusive and frequent use of Strela Stealer, likely operated solely by this actor, coupled with a distinct tactical evolution involving the weaponization of stolen legitimate emails and real invoices for phishing authenticity. There is no public attribution of HIVE-0145 to a specific country; it is understood to operate within the broader cybercriminal ecosystem.

Actores similares

hiveransomware · 208Archive via Utilityactor · 1Archive via Custom Methodactor · 1Hiveactor · 1Hive0117apt · 0Hive0131apt · 0Hive0156apt · 0Hive0163apt · 0Hive0137apt · 0
Tecnicas MITRE
T1016 - System Network Configuration Discovery, T1102 - Web Service, T1059 - Command and Scripting Interpreter, T1574 - Hijack Execution Flow, T1104 - Multi-Stage Channels, T1566 - Phishing
Tipo
apt
Pais origen
Unknown
Motivacion
-
Impacto
12
Actualizado
Mon, 05 Ja