APT30

G0013

Threat group.View on attack.mitre.org

About this group

APT30 is a threat group suspected to be associated with the Chinese government. While Naikon shares some characteristics with APT30, the two groups do not appear to be exact matches.

Techniques used2

Procedure examples2

TechniqueProcedure example
T1204.002
Malicious File

APT30 has relied on users to execute malicious file attachments delivered via spearphishing emails.

T1566.001
Spearphishing Attachment

APT30 has used spearphishing emails with malicious DOC attachments.

Software5

Campaigns0

None recorded.

References2

  1. Baumgartner Golovkin Naikon 2015 Open source
    Baumgartner, K., Golovkin, M.. (2015, May 14). The Naikon APT. Retrieved January 14, 2015.
  2. FireEye APT30 Open source
    FireEye Labs. (2015, April). APT30 AND THE MECHANICS OF A LONG-RUNNING CYBER ESPIONAGE OPERATION. Retrieved November 17, 2024.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.