Uptime Hamster: 21d 12h 26mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
Logo del actor de amenaza Ruby Sleet

Ruby Sleet

0 incidentes 0 paises 0 sectores apt KP Ultimo: -
Aliases: CERIUM
Ver en IntelTracker → APTTrail →
Ruby Sleet is a sophisticated, North Korean state-aligned advanced persistent threat (APT) group, first identified in 2020, linked to North Korea's Ministry of State Security. The group's primary motivation is intelligence collection, focusing on perceived adversaries like South Korea, the United States, and Japan, as well as obtaining military capabilities information and financial gain through targeted attacks. Ruby Sleet distinguishes itself through significantly increasing the sophistication of its phishing operations, developing custom capabilities for specific targets, and employing supply chain attacks. The group is also known by the aliases CERIUM and APT37, which is further known as ScarCruft and Velvet Chollima, clarifying that groups like Emerald Hurricane and Sapphire Tempest are related but distinct entities.

Aliases del actor

CERIUM

Actores similares

moonstone-sleetactor · 1apt-onyxsleetactor · 1Moonstone Sleetthreat-actor · 1Pearl Sleetapt · 0Opal Sleetapt · 0RUBYCARPapt · 0
Motivacion