Uptime Hamster: 10d 14h 11mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza TAG-140

TAG-140

0 incidentes 0 paises 0 sectores apt PK Ultimo: -
Ver en IntelTracker → APTTrail →
TAG-140 is a cyber espionage threat actor group that has been active since at least 2019, exhibiting a consistent pattern of refining its malware arsenal and delivery techniques. It is assessed with moderate confidence to be a suspected Pakistani state-aligned group. The group operates as a sub-cluster or operational affiliate of the broader Transparent Tribe collective, also tracked as APT36, SideCopy, ProjectM, and MYTHIC Leopard. TAG-140's primary motivation is cyber espionage and information theft, focusing on harvesting sensitive data from its targets. A distinguishing characteristic of TAG-140 is its rapid evolution in tradecraft and its employment of an interchangeable suite of Remote Access Trojans to complicate detection and attribution efforts. Recent activities notably involve the use of ClickFix-style social engineering lures, specifically spoofing the Indian Ministry of Defence to ensnare victims.

Actores similares

tag-22actor · 1Local Data Stagingactor · 1Contagious Interviewapt · 1TAG-124apt · 0TAG-100apt · 0TAG-28apt · 0TAG-112apt · 0TAG-38apt · 0TAG-56apt · 0
Tipo
apt
Pais origen
PK
Motivacion
-
Impacto
1
Actualizado
Tue, 21 Ap