USUSconfidence: 25

NightEagleNightEagle

Also known as: APT-Q-95 · NightEagle

Origin
US
Known aliases
2
Target sectors
3
Attribution
State-sponsored

Profile

NightEagle is an advanced Threat Actor that targeted China's High-Tech Industry and Military Organisation, leveraging sophisticated techniques, 0 days, and specialized detection avoiding malware. The threat actor seems to have access to significant funding, with dedicated infrastructure, and focuses on low-noise, low-impact intelligence gathering operations. NightEagle is identified as a North-American, state-sponsored or affiliated group that has been active since at least 2023.

Aliases· 2

APT-Q-95NightEagle

Target sectors· 3

MilitaryGovernmentPrivate Sector

Known victims· 1

  • China

References

  1. https://www.authentic8.com/blog/cyber-intel-brief-nighteagle-apt-ai-deepfakes-spnego-flaw
  2. https://thehackernews.com/2025/07/nighteagle-apt-exploits-microsoft.html
  3. https://cybersecuritynews.com/nighteagle-apt-exploiting-0-days/

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Group
Night Dragon
Actor
BlueHornet
Group
Aoqin Dragon
Actor
UNC2717
Actor
APT41
Actor
Tick
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.