TA410
0 incidentes
0 paises
0 sectores
apt CN Ultimo: -
Aliases: Witchetty, FlowingFrog, LookingFrog, entre otros, objetivos estratégicos, FlowCloud, LookBack
TA410 is a cyberespionage group active since at least December 2018, first publicly documented by Proofpoint in August 2019. It functions as an umbrella organization composed of three distinct teams, FlowingFrog, LookingFrog, and JollyFrog, each with specialized toolsets and targets, though they share common tactics, techniques, and procedures and elements of their infrastructure. The group is assessed with high confidence to be linked to Chinese state-sponsored cyber operations, particularly through its loose association with APT10. Its primary motivation is information theft and espionage against high-value targets. A key characteristic distinguishing TA410 is its operational structure as a segmented yet coordinated entity, enabling diverse targeting and the rapid adoption and exploitation of newly disclosed vulnerabilities. The group is sometimes confused with APT10 due to overlaps in their methods, but TA410 is tracked as a separate entity, potentially engaging in false flag activi