Uptime Hamster: 10d 14h 10mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza TAG-56

TAG-56

0 incidentes 0 paises 0 sectores apt IR Ultimo: -
Ver en IntelTracker → APTTrail →
TAG-56 is an Iranian state-sponsored cyber espionage group, also widely tracked as APT42, Charming Kitten, TA453, UNC788, and CALANQUE. The group first emerged in 2015 and is assessed with high confidence to operate on behalf of the Islamic Revolutionary Guard Corps (IRGC) Intelligence Organization. Their primary motivation is cyber espionage and surveillance, specifically targeting individuals and organizations of strategic interest to the Iranian government. TAG-56 is particularly distinguished by its use of sophisticated social engineering and highly targeted spear-phishing campaigns, where operatives often spend weeks or months building trust with victims by impersonating journalists, researchers, or event organizers before attempting to steal credentials. This patient and rapport-building approach sets them apart from many other threat actors focused on immediate exploitation.

Actores similares

tag-22actor · 1Local Data Stagingactor · 1Contagious Interviewapt · 1TAG-124apt · 0TAG-100apt · 0TAG-28apt · 0TAG-140apt · 0TAG-112apt · 0TAG-38apt · 0
Tecnicas MITRE
T1203, T1083, T1059.001, T1071.001, T1078.003
CVEs relacionadas
CVE-2025-6558
Tipo
apt
Pais origen
IR
Motivacion
-
Impacto
4
Actualizado
Sat, 18 No

Sectores objetivo (SOCRadar)

Grantmaking and Giving ServicesResearch and Development in the Social Sciences and Humanities