Common Information
Type Value
Value
APT33
Category Actor
Type Mitre-Ics-Groups
Misp Type Cluster
Description APT33 is a suspected Iranian threat group that has carried out operations since at least 2013. The group has targeted organizations across multiple industries in the United States, Saudi Arabia, and South Korea, with a particular interest in the aviation and energy sectors.
Details Published Attributes CTI Title
Details Website 2022-09-06 50 Adversaries Actively Utilizing PowerShell Empire
Details Website 2022-08-15 2 Oil and Gas Cybersecurity: Recommendations Part 3
Details Website 2022-08-15 2 Oil and Gas Cybersecurity: Recommendations Part 3
Details Website 2022-08-11 1 Oil and Gas Cybersecurity: Threats Part 2
Details Website 2022-08-11 1 Oil and Gas Cybersecurity: Threats Part 2
Details Website 2022-03-03 4 Threat Hunting for Malicious PowerShell Usage in Gigasheet
Details Website 2022-02-23 40 HermeticWiper | New Destructive Malware Used In Cyber Attacks on Ukraine
Details Website 2022-02-21 17 APT-C-56(透明部落)近期最新攻击分析与关联疑似Gorgon Group攻击事件分析预警
Details Website 2022-01-01 8 IoCs/poshc2_apt_33.md at master · jeFF0Falltrades/IoCs
Details Website 2021-10-28 11 NanoCore RAT
Details Website 2021-06-10 107 Cloud Atlas Navigates Us Into New Waters - DomainTools | Start Here. Know Now.
Details Website 2021-04-30 1 A Second Iranian State-Sponsored Ransomware Operation “Project Signal” Emerges
Details Website 2020-12-10 22 Attack Activities by Quasar Family - JPCERT/CC Eyes
Details Website 2020-09-11 29 Research Roundup: Activity on Previously Identified APT33 Domains
Details Website 2020-08-31 7 Iranian hackers are selling access to compromised companies on an underground forum
Details Website 2020-08-09 7 FBI says an Iranian hacking group is attacking F5 networking devices
Details Website 2020-07-13 6 SCANdalous! (External Detection Using Network Scan Data and Automation) | Mandiant
Details Website 2020-06-22 128 VenomRAT - new, hackforums grade, reincarnation of QuasarRAT
Details Website 2020-06-18 8 Inside Microsoft 365 Defender: Mapping attack chains from cloud to endpoint - Microsoft Security Blog
Details Website 2020-06-05 28 New Cyber Operation Targets Italy: Digging Into the Netwire Attack Chain - Yoroi
Details Website 2020-05-21 15 ThreatConnect Research Roundup: Possible APT33 Infrastructure
Details Website 2020-04-13 24 Time Between Disclosure, Patch Release & Vulnerability Exploits
Details Website 2020-02-18 9 Iranian Hackers Exploiting VPN Flaws to Backdoor Organizations Worldwide
Details Website 2020-02-16 9 Iranian hackers have been hacking VPN servers to plant backdoors in companies around the world
Details Website 2020-02-10 1 FBI warns about ongoing attacks against software supply chain companies