Uptime Hamster: 11d 20h 54mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza TunnelSnake

TunnelSnake

0 incidentes 0 paises 0 sectores apt CN Ultimo: -
Ver en IntelTracker → APTTrail →
TunnelSnake is a state-sponsored cyber espionage group assessed with high confidence to be of Chinese origin. The group first emerged with documented activity in October 2019, focusing its operations on governmental and diplomatic entities in Asia and Africa. Their primary motivation is to steal sensitive information through long-term infiltration. What notably distinguishes TunnelSnake from other actors is its extensive reliance on the highly evasive Moriya rootkit, a custom-developed kernel-mode malware designed for covert command and control, allowing them to remain undetected within compromised networks for extended periods. The group is primarily known by the name TunnelSnake and does not have widely recognized aliases or common confusions with other unrelated threat actors.

Actores similares

Operation TunnelSnakeapt · 0
Tecnicas MITRE
T1109, T1003.003, T1562.001, T1059.001, T1071.001, T1205.001
Tipo
apt
Pais origen
CN
Motivacion
-
Impacto
9
Actualizado
Sat, 09 De

Sectores objetivo (SOCRadar)

Space & DefenseNational Security&International Affairs