Rozwój technik ataku grupy UNC1151/Ghostwriter
Tags
attack-pattern: | Data |
Common Information
Type | Value |
---|---|
UUID | 9f7b53b3-eb41-440a-b0f8-4adf9fcc2650 |
Fingerprint | 58bc61af801a94c8 |
Analysis status | DONE |
Considered CTI value | 1 |
Text language | |
Published | July 19, 2022, midnight |
Added to db | Sept. 26, 2022, 9:34 a.m. |
Last updated | Nov. 17, 2024, 5:50 p.m. |
Headline | CERT Polska w social mediach |
Title | Rozwój technik ataku grupy UNC1151/Ghostwriter |
Detected Hints/Tags/Attributes | 13/1/15 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://cert.pl/posts/2022/07/techniki-unc1151/ |
URL Provider
Details | Provider | Source level domain |
---|---|---|
Details | cert.pl | cert.pl |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | sejm.pl |
|
Details | Domain | 1 | autoryzacja-poczty.interia.site |
|
Details | Domain | 1 | interia.weryfikacja-uzytkownika.site |
|
Details | Domain | 1 | konto.safe-onet.online |
|
Details | Domain | 1 | poczta.walidacja-konta.space |
|
Details | Domain | 1 | poczta.walidacja-uzytkownika.space |
|
Details | Domain | 1 | usluga.kontrola-poczty.top |
|
Details | Domain | 1 | konto.weryfikacja-uzytkownika.top |
|
Details | Domain | 5 | incydent.cert.pl |
|
Details | File | 1 | sejm.pl |
|
Details | File | 1 | konto.safe |
|
Details | File | 5 | incydent.cer |
|
Details | File | 38 | t.pl |
|
Details | Mandiant Uncategorized Groups | 65 | UNC1151 |
|
Details | Url | 1 | https://incydent.cert.pl/. |