Uptime Hamster: 10d 23h 3mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza MoustachedBouncer

MoustachedBouncer

1 incidentes 0 paises 0 sectores apt BY Ultimo: 2026-05-25
Aliases: APT MOUSTACHEDBOUNCER
Ver en IntelTracker → APTTrail →
MoustachedBouncer is a cyber espionage group aligned with Belarus interests that has been active since at least November 2014. The group specializes in espionage campaigns targeting foreign embassies within Belarus. Since 2020, MoustachedBouncer has evolved its operational methods, incorporating adversary-in-the-middle (AitM) attacks, likely at the ISP level, to compromise targets. This distinct method of intercepting and manipulating internet traffic to deliver malware via fake Windows Update pages sets the group apart from others. While primarily utilizing their NightClub and Disco malware frameworks, assessments with low confidence suggest potential cooperation with the Winter Vivern group, which targets European diplomats.

Aliases del actor

APT MOUSTACHEDBOUNCER

Actores similares

apt-moustachedbounceractor · 1apt-45actor · 2apt-c-27actor · 2apt-c-01actor · 2apt-c-12actor · 1apt-18actor · 1apt-1877teamactor · 1apt-27actor · 1apt-30actor · 1apt-38actor · 1

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
Webunknownwww.welivesecurity.comAPT MOUSTACHEDBOUNCER indicators and references
Repositoriounknowngithub.comAPT MOUSTACHEDBOUNCER indicators and references
Webunknownraw.githubusercontent.comAPT MOUSTACHEDBOUNCER indicators and references
Motivacion