RUG0133

DustSquadDustSquad

Also known as: Nomadic Octopus · DustSquad

Origin
RU
Known aliases
2

Profile

Prodaft researchers have published a report on Paperbug, a cyber-espionage campaign carried out by suspected Russian-speaking group Nomadic Octopus and which targeted entities in Tajikistan. According to Prodaft, known compromised victims included high-ranking government officials, telcos, and public service infrastructures. Compromised devices also included OT devices, besides your typical computers, servers, and mobile devices. In typical Prodaft fashion, the company also gained access to one of the group's C&C server backend panels.

Aliases· 2

Nomadic OctopusDustSquad

MITRE ATT&CK Group crosswalk

G0133

References

  1. https://securelist.com/octopus-infested-seas-of-central-asia/88200/
  2. https://www.prodaft.com/m/reports/PAPERBUG_TLPWHITE-1.pdf
  3. https://www.virusbulletin.com/conference/vb2018/abstracts/nomadic-octopus-cyber-espionage-central-asia/

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Group
Nomadic Octopus
Actor
Dust Storm
Actor
NOMAD PANDA
Actor
Operation BugDrop
Campaign
Operation Dust Storm
Group
Sandworm Team
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.