Uptime Hamster: 10d 9h 35mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza UNC3886

UNC3886

1 incidentes 1 paises 1 sectores apt CN Ultimo: 2026-05-25
Ver en IntelTracker → APTTrail →
UNC3886 is a China-nexus cyber espionage group that emerged with documented activity tracing back to late 2021, though publicly reported in 2022. The group's primary motivation is long-term intelligence gathering and strategic spying rather than financial gain, aiming to establish persistent surveillance footholds and pre-position for potential future disruptive capabilities aligned with geopolitical objectives. What sets UNC3886 apart is its consistent expertise in exploiting zero-day vulnerabilities, particularly in network devices and virtualization technologies that often lack traditional endpoint detection and response solutions, coupled with extreme operational stealth including extensive log tampering and the use of legitimate services for covert command and control. UNC3886 is not known to operate under multiple aliases, but it has been observed sharing tools like MOPSLED with other Chinese cyber espionage groups, such as APT41.
Motivacion