Longhorn is a cyberespionage group that emerged with documented activity as early as 2007, although its public attribution and widespread recognition came in 2017 following the WikiLeaks 'Vault 7' disclosures. This group, closely associated with the United States Central Intelligence Agency, specializes in information theft and intelligence gathering from targeted entities globally. What distinguishes Longhorn is its proven capability to utilize zero-day vulnerabilities and its rigorous operational security measures, including the development of custom malware and sophisticated evasion techniques. The group operates under several aliases, including The Lamberts, APT-C-39, and PLATINUM TERMINAL, sometimes leading to confusion with other threat actors.