elcometa
0 incidentes
0 paises
0 sectores
ransomware CO Ultimo: -
Aliases: SynAck
elcometa, also widely known as Machete, El Machete, and APT-C-43, is a cyber espionage group that has been actively operating since at least 2010. This group is strongly assessed with moderate confidence to be of Venezuelan origin, or at minimum, a Spanish-speaking entity due to the frequent use of Spanish in their malware code, phishing campaigns, and targeted victimology. Their primary motivation is information theft and cyber espionage, with a specific focus on collecting intelligence related to military grids, navigation routes, and Geographic Information Systems (GIS) software files. elcometa is distinguishable by its consistent targeting of Latin American governmental and military entities, leveraging highly tailored spear-phishing emails that often incorporate stolen, authentic classified military documents and military jargon to enhance credibility. The group has also demonstrated a unique capability to exfiltrate stolen data not only through command and control servers but als
Paises objetivo (SOCRadar)
Argentina
BelgiumBolivia, Plurinational State of
Brazil
Canada
Chile
China
ColombiaCuba
Germany
Sectores objetivo (SOCRadar)
Energy & Utilities ManufacturingWholesale TradeTransportation&WarehousingFinanceEducational ServicesOtherPublic AdministrationOil & GasTelecommunications