Storm-1567Storm-1567

Also known as: Storm-1567 · Akira · PUNK SPIDER · GOLD SAHARA

Known aliases
4

Profile

Storm-1567 is the threat actor behind the Ransomware-as-a-Service Akira. They attacked Swedish organizations in March 2023. This ransomware utilizes the ChaCha encryption algorithm, PowerShell, and Windows Management Instrumentation (WMI). Microsoft's Defender for Endpoint successfully blocked a large-scale hacking campaign carried out by Storm-1567, highlighting the effectiveness of their security solution.

Aliases· 4

Storm-1567AkiraPUNK SPIDERGOLD SAHARA

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Actor
Storm-1167
Actor
Storm-1674
Actor
Storm-1575
Actor
Storm-0867
Actor
Storm-1133
Actor
Storm-1044
Sourced from MISP-Galaxy Threat Actor cluster. Curated by Adam Lundqvist, Founder at SQUR.