Uptime Hamster: 12d 2h 51mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza NightEagle

NightEagle

0 incidentes 0 paises 0 sectores apt Unknown Ultimo: -
Aliases: APT-Q-95
Ver en IntelTracker → APTTrail →
NightEagle, also tracked as APT-Q-95 and APT-C-78, is a highly sophisticated and well-funded cyberespionage group publicly disclosed in July 2025, with operations dating back to at least 2023. The group is assessed with high confidence to originate from North America, specifically the US West Coast, based on its fixed operational schedule aligning with that timezone. Its primary motivation is intelligence theft, focusing on strategic industries and government entities in China, including high-tech, semiconductor manufacturing, quantum technology, artificial intelligence, and military sectors. NightEagle distinguishes itself through its ultra-fast switching of network infrastructure, extensive use of dedicated, disposable C2 domains, and reliance on suspected zero-day exploits in Microsoft Exchange servers to maintain stealthy, long-term access.

Aliases del actor

APT-Q-95

Actores similares

apt-45actor · 2apt-c-27actor · 2apt-c-01actor · 2apt-c-12actor · 1apt-18actor · 1apt-1877teamactor · 1apt-27actor · 1apt-30actor · 1apt-38actor · 1apt-c-48actor · 1
Tecnicas MITRE
T1565.001 - Stored Data Manipulation, T1008 - Fallback Channels, T1070 - Indicator Removal on Host, T1190 - Exploit Public-Facing Application, T1059.005, T1053.005 - Scheduled Task
Tipo
apt
Pais origen
Unknown
Motivacion
-
Impacto
46
Actualizado
Wed, 23 Ju

Paises objetivo (SOCRadar)

United Arab EmiratesChinaJordanLebanonSaudi Arabia

Sectores objetivo (SOCRadar)

Other Information ServicesSoftware PublishersManufacturingElectrical Equipment, Appliance, and Component ManufacturingPublic AdministrationData Processing ServicesSpace & DefenseAircraft ManufacturingNational Security&International AffairsTelecommunications