Uptime Hamster: 10d 8h 4mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza EvilPost

EvilPost

0 incidentes 0 paises 0 sectores apt CN Ultimo: -
Aliases: CVE-2015-2545, Japanese Defence Sector, un servidor C2 (Control de Comandos) localizado en Japón
Ver en IntelTracker → APTTrail →
EvilPost is a sophisticated cyber threat actor primarily engaged in advanced persistent threats (APTs) targeting multiple sectors across various countries. The group's operations are characterized by the use of custom malware and exploitation of critical vulnerabilities. EvilPost is assessed with high confidence to be of Chinese origin, reflecting motivations aligned with intelligence gathering and strategic advantage for state interests. While they have been linked to numerous high-profile attacks, specific details defining their unique operational characteristics or structure evolution are not widely documented under this designation. They are often associated with activities similar to groups like APT29, Cozy Bear, and The Dukes, though these are considered related groups rather than direct aliases or structural evolutions of EvilPost.

Aliases del actor

CVE-2015-2545Japanese Defence Sectorun servidor C2 (Control de Comandos) localizado en Japón

Actores similares

iocontrolactor · 1redcontroleactor · 1cve-2023-41991actor · 1apt-sectora05actor · 1cve-2023-36884actor · 1Bypass User Account Controlactor · 1private-sector-offensiveactor · 1Operation DRBControlapt · 0PhantomControlapt · 0
Tecnicas MITRE
T1059.001, T1078.002, T1566.001, T1071
Tipo
apt
Pais origen
CN
Motivacion
-
Impacto
4
Actualizado
Wed, 01 Ju

Sectores objetivo (SOCRadar)

Energy & Utilities