Uptime Hamster: 10d 8h 7mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza TA459

TA459

1 incidentes 1 paises 0 sectores apt CN Ultimo: 2026-05-25
Aliases: G0062, PlugX, NetTraveler, ZeroT, PCrat, Gh0st, otros
Ver en IntelTracker → APTTrail →
TA459, also tracked as G0062 by MITRE ATT&CK, is a Chinese state-sponsored cyber espionage group that has been actively conducting operations since at least 2013. The group's primary objective is information theft and espionage, focusing on intelligence relevant to Beijing's interests, including military posture, telecommunications infrastructure, and political developments across former Soviet states. TA459 consistently targets entities in Central Asia, Russia, and neighboring countries such as Belarus and Mongolia. A distinguishing characteristic of TA459 is its strategic "collateral targeting" approach, where it may target financial analysts covering a specific sector, like telecommunications, rather than directly attacking the primary target, to gather relevant intelligence. While employing some malware common among Chinese APT groups, TA459 often utilizes a custom ZeroT downloader that incorporates steganography to conceal its payloads.

Aliases del actor

G0062PlugXNetTravelerZeroTPCratGh0stotros

Actores similares

zerotoleranceransomware · 2apt-nettraveleractor · 1gh0st-ratactor · 1plugxactor · 1nettraveleractor · 1NetTravelerapt · 0

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / leak siteunknownduckduckgo.comTA459 (China)
Webunknownduckduckgo.comTA459 (China)
Motivacion