Uptime Hamster: 10d 9h 34mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza IronHusky

IronHusky

0 incidentes 0 paises 0 sectores apt CN Ultimo: -
Aliases: MysterySnail, CVE-2021-40449, Vicious Panda, DNSep, ironhusky, nccTrojan, phantomnet, piratepanda, portdoor, smanager
Ver en IntelTracker → APTTrail →
IronHusky is a Chinese-speaking cyber espionage group first observed in mid-2017, operating with a primary motivation of information theft and espionage, particularly focusing on tracking geopolitical agendas. The group initially leveraged common Remote Access Trojans (RATs) such as PlugX and PoisonIvy but has since evolved its custom malware capabilities, notably developing and continuously upgrading the MysterySnail RAT and its streamlined variant, MysteryMonoSnail. IronHusky is distinguished by its focused targeting of a specific geopolitical agenda, shifting its attention from Russian military contractors to Mongolian government entities in early 2018. The group has also been identified by the alias BBCY-TA1.

Aliases del actor

MysterySnailCVE-2021-40449Vicious PandaDNSepironhuskynccTrojanphantomnetpiratepandaportdoorsmanager

Actores similares

vicious-pandaactor · 1Vicious Pandaapt · 0Aquatic Pandaactor · 1Mustang Pandaapt · 1APT27 (Emissary Panda)actor · 1Putter Pandaapt · 1Deep Pandaactor · 1anchor-pandaactor · 1aquatic-pandaactor · 1big-pandaactor · 1
Motivacion