G0018
G0018admin@338
Description
[admin@338](https://attack.mitre.org/groups/G0018) is a China-based cyber threat group. It has previously used newsworthy events as lures to deliver malware and has primarily targeted organizations involved in financial, economic, and trade policy, typically using publicly available RATs such as [PoisonIvy](https://attack.mitre.org/software/S0012), as well as some non-public backdoors. (Citation: FireEye admin@338)
References
Software attributed to this2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Software | LOWBALLs0042 | 100% | live |
| Software | BUBBLEWRAPs0043 | 95% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.