Uptime Hamster: 22d 6h 37mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
Logo del actor de amenaza Cinnamon Tempest

Cinnamon Tempest

1 incidentes 1 paises 1 sectores threat-actor Ultimo: 2026-05-25
Aliases: DEV-0401, Emperor Dragonfly, BRONZE STARLIGHT
Ver en IntelTracker → APTTrail →
Cinnamon Tempest is a China-based threat group that has been active since at least 2021 deploying multiple strains of ransomware based on the leaked Babuk source code. Cinnamon Tempest does not operate their ransomware on an affiliate model or purchase access but appears to act independently in all stages of the attack lifecycle. Based on victimology, the short lifespan of each ransomware variant, and use of malware attributed to government-sponsored threat groups, Cinnamon Tempest may be motivated by intellectual property theft or cyberespionage rather than financial gain.

Aliases del actor

DEV-0401Emperor DragonflyBRONZE STARLIGHT

Actores similares

BRONZE STARLIGHTapt · 0night-dragonactor · 1aoqin-dragonactor · 1sharp-dragon--chkptactor · 1Aoqin Dragonthreat-actor · 1Night Dragonapt · 1Amaranth-Dragonapt · 0Camaro Dragonapt · 0Moshen Dragonapt · 0Operation Dragon Castlingapt · 0

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
Webunknownattack.mitre.orgOSINT
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

China (1)

Sectores atacados

Software (1)