Sowbug
1 incidentes
1 paises
0 sectores
apt CN Ultimo: 2026-05-25
Aliases: G0054, Felismus
Sowbug, also identified as G0054, is a cyber-espionage group that has primarily targeted government entities in South America and Southeast Asia since at least early 2015. The group is distinguished by its stealthy and methodical approach, enabling prolonged access to compromised networks for the purpose of intelligence gathering. Sowbug's operations are characterized by persistent espionage and a focus on stealing documents, rather than financial gain or disruption. This group is known for its capability to infiltrate multiple targets simultaneously while maintaining a low profile, often operating outside standard business hours to avoid detection. No notable evolution in their structure or model has been publicly reported, and it has not been commonly confused with other unrelated threat actors beyond its MITRE ATT&CK alias.