Uptime Hamster: 10d 6h 2mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Wekby

Wekby

0 incidentes 0 paises 0 sectores apt CN Ultimo: -
Aliases: APT18, DYNAMITE PANDA, G0026, PLA Navy, SCANDIUM, Satin Typhoon, TG-0416, APT 18
Ver en IntelTracker → APTTrail →
Wekby, also widely known as APT18, is a Chinese nation-state-aligned cyber espionage group active since at least 2009. The group is assessed to be directly supported by and aligned with the Chinese People's Liberation Navy. Wekby's primary motivation is information theft and cyber espionage, with the aim of advancing China's industries by exfiltrating sensitive data and intellectual property from targeted entities. A distinguishing characteristic of Wekby is its rapid exploitation of zero-day vulnerabilities, often shortly after their public disclosure, including developing its own zero-day exploits. The group is known to have leveraged vulnerabilities like CVE-2015-5119 from the Hacking Team leak. Wekby operates under numerous aliases, including APT18, Dynamite Panda, TG-0416, Scandium, Satin Typhoon, Threat Group-0416, and G0026.

Aliases del actor

APT18DYNAMITE PANDAG0026PLA NavySCANDIUMSatin TyphoonTG-0416APT 18

Actores similares

apt-flaxtyphoonactor · 1apt-platinumactor · 1apt-sharppandaactor · 1apt-twistedpandaactor · 1Mustang Pandaapt · 1APT27 (Emissary Panda)actor · 1Putter Pandaapt · 1Stone Pandaapt · 0Vicious Pandaapt · 0Pitty Pandaapt · 0
Motivacion