G0010

G0010Turla

Description

[Turla](https://attack.mitre.org/groups/G0010) is a cyber espionage threat group that has been attributed to Russia's Federal Security Service (FSB). They have compromised victims in over 50 countries since at least 2004, spanning a range of industries including government, embassies, military, education, research and pharmaceutical companies. [Turla](https://attack.mitre.org/groups/G0010) is known for conducting watering hole and spearphishing campaigns, and leveraging in-house tools and malware, such as [Uroburos](https://attack.mitre.org/software/S0022).(Citation: Kaspersky Turla)(Citation: ESET Gazer Aug 2017)(Citation: CrowdStrike VENOMOUS BEAR)(Citation: ESET Turla Mosquito Jan 2018)(Citation: Joint Cybersecurity Advisory AA23-129A Snake Malware May 2023)

References

  1. https://attack.mitre.org/groups/G0010
  2. https://www.accenture.com/us-en/blogs/cyber-defense/turla-belugasturgeon-compromises-government-entity
  3. https://blog.talosintelligence.com/2021/09/tinyturla.html
  4. https://www.welivesecurity.com/wp-content/uploads/2018/01/ESET_Turla_Mosquito.pdf
  5. https://www.welivesecurity.com/wp-content/uploads/2017/08/eset-gazer.pdf
  6. https://www.welivesecurity.com/2019/05/29/turla-powershell-usage/
  7. https://www.cisa.gov/sites/default/files/2023-05/aa23-129a_snake_malware_2.pdf
  8. https://securelist.com/introducing-whitebear/81638/
  9. https://securelist.com/the-epic-turla-operation/65545/
  10. https://www.leonardo.com/documents/20142/10868623/Malware+Technical+Insight+_Turla+%E2%80%9CPenquin_x64%E2%80%9D.pdf

Software attributed to this10

TypeTargetConfidenceTier
SoftwarePenquins0587100%live
SoftwareCarbons0335100%live
SoftwareEpics0091100%live
SoftwareHyperStacks0537100%live
SoftwareUrobuross0022100%live
SoftwareTinyTurlas0668100%live
SoftwareMosquitos0256100%live
SoftwareGazers0168100%live
SoftwareIronNetInjectors0581100%live
SoftwarePowerStallions039395%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
Uroburos
Group
Inception
Group
Dragonfly
Group
FIN10
Group
Earth Lusca
Group
TA459
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.