KarkadannKarkadann

Also known as: Piwiks · Karkadann

Known aliases
2

Profile

Karkadann is a threat actor that has been active since at least October 2020, targeting government bodies and news outlets in the Middle East. They have been involved in watering hole attacks, compromising high-profile websites to inject malicious JavaScript code. The group has been linked to another commercial spyware company called Candiru, suggesting they may utilize multiple spyware technologies. There are similarities in the infrastructure and tactics used by Karkadann in their campaigns.

Aliases· 2

PiwiksKarkadann

References

  1. https://securelist.com/apt-trends-report-q2-2022/106995/
  2. https://www.welivesecurity.com/2021/11/16/strategic-web-compromises-middle-east-pinch-candiru/

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Actor
CardinalLizard
Actor
Caracal Kitten
Software
Karkoff
Actor
Karakurt
Actor
Madi
Actor
SandCat
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.