Uptime Hamster: 10d 13h 32mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Metador

Metador

1 incidentes 1 paises 0 sectores apt UNKNOWN Ultimo: 2026-05-25
Aliases: "Mystery Metador", proveedores de servicios internet (ISPs), universidades, principalmente en regiones como el Oriente Medio, África
Ver en IntelTracker → APTTrail →
Metador is a cyber espionage group first identified by SentinelLabs researchers in late 2021, though its operations are assessed to have commenced in late 2020. The group's primary objective is intelligence gathering, focusing on long-term access to victim networks for data collection. Metador distinguishes itself through exceptional operational security, including segmented infrastructure per victim, rapid deployment of countermeasures against security solutions, and the exclusive use of custom, in-memory malware platforms. The group is known for its active development of bespoke malware and its ability to maintain covert persistence for extended periods. Attribution remains unconfirmed, but linguistic and cultural clues observed in their malware, such as British pop punk lyrics and Argentinian political cartoons, suggest a diverse or contractor-based operational structure involving individuals who speak English and Spanish. The name "Metador" itself is derived from the string "I am m

Aliases del actor

"Mystery Metador"proveedores de servicios internet (ISPs)universidadesprincipalmente en regiones como el Oriente MedioÁfrica

Actores similares

mysterious-metadoractor · 1mysterysnailactor · 1Internet Connection Discoveryactor · 1
Tecnicas MITRE
T1027, T1546, T1070.004, T1059, T1095, T1059.003
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United States (1)

Sectores objetivo (SOCRadar)

Information ServicesEducational ServicesTelecommunicationsOther Information Services