C0023

C0023Operation Ghost

ATT&CK
14.1
References
2

Description

[Operation Ghost](https://attack.mitre.org/campaigns/C0023) was an [APT29](https://attack.mitre.org/groups/G0016) campaign starting in 2013 that included operations against ministries of foreign affairs in Europe and the Washington, D.C. embassy of a European Union country. During [Operation Ghost](https://attack.mitre.org/campaigns/C0023), [APT29](https://attack.mitre.org/groups/G0016) used new families of malware and leveraged web services, steganography, and unique C2 infrastructure for each victim.(Citation: ESET Dukes October 2019)

References

  1. https://attack.mitre.org/campaigns/C0023
  2. https://www.welivesecurity.com/wp-content/uploads/2019/10/ESET_Operation_Ghost_Dukes.pdf

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Campaign
Operation Sharpshooter
Campaign
Operation Wocao
Campaign
C0021
Campaign
C0027
Actor
Operation Ghoul
Campaign
C0017
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.