About this group
TEMP.Veles is a Russia-based threat group that has targeted critical infrastructure. The group has been observed utilizing TRITON, a malware framework designed to manipulate industrial safety systems.
Techniques used0
No techniques recorded.
Procedure examples0
No procedure examples recorded.
References3
- FireEye TEMP.Veles 2018 Open source
FireEye Intelligence . (2018, October 23). TRITON Attribution: Russian Government-Owned Lab Most Likely Built Custom Intrusion Tools for TRITON Attackers. Retrieved April 16, 2019.
- FireEye TEMP.Veles JSON April 2019 Open source
Miller, S., et al. (2019, April 10). TRITON Appendix C. Retrieved April 29, 2019.
- FireEye TRITON 2019 Open source
Miller, S, et al. (2019, April 10). TRITON Actor TTP Profile, Custom Attack Tools, Detections, and ATT&CK Mapping. Retrieved April 16, 2019.