Uptime Hamster: 10d 14h 11mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Operation Tainted Love

Operation Tainted Love

0 incidentes 0 paises 0 sectores apt CN Ultimo: -
Ver en IntelTracker → APTTrail →
Operation Tainted Love, which emerged in the first quarter of 2023, is attributed to a Chinese state-sponsored cyberespionage actor, demonstrating an evolution of tooling previously associated with Operation Soft Cell. This actor's primary motivation is cyberespionage, focusing on reconnaissance, credential theft, lateral movement, and data exfiltration with specific tasking requirements. What distinguishes this group is its deployment of a custom, highly maintained, and versioned credential theft malware, mim221, equipped with advanced anti-detection capabilities. The group is closely linked to Operation Soft Cell and Gallium, and shares possible connections with APT41, making it important to distinguish this campaign from a separate, similarly named operation by Indian state-backed actors targeting Italian defense firms.

Actores similares

Operation Wocaoapt · 1influence-operationsactor · 1Operation Ghostwriterapt · 0Operation C-Majorapt · 0Operation Silent Skimmerapt · 0Operation Cobalt Whisperapt · 0Operation RusticWebapt · 0Operation LiberalFaceapt · 0Operation Olympic Gamesapt · 0Operation SalmonSlalomapt · 0
Motivacion