APT
ATLAS
Atlas
Actors
147
Names
471
Sectors
40
Requirements
480
⌘K
▸
sign in
Atlas
Actors
147
Names
471
Sectors
40
Requirements
480
LOADING
APT17 (aka Hidden Lynx, Deputy Dog) · APT Atlas
Actors
/
Nation-state / APT
/
Asia
APT17
G0025
APT
CN · China
AKA
Hidden Lynx · Deputy Dog · Elderwood · SNEAKY PANDA · Tailgater Team · Group 8
CrowdStrike
:
AURORA PANDA
MITRE
:
G0025
Secureworks
:
IRON TWILIGHT
Targets
10
Sectors
13
Threat types
1
GIRs covered
0/480
Active since
2009
Pin to atlas
Watch
Share
Export
Also tracked as
4 vendor names · 6 other aliases
Open Rosetta Stone
CrowdStrike
AURORA PANDA
Mandiant
APT17
MITRE
G0025
Secureworks
IRON TWILIGHT
UNATTRIBUTED ALIASES
Hidden Lynx
Deputy Dog
Elderwood
SNEAKY PANDA
Tailgater Team
Group 8
Victimology
Geographic footprint · 10 countries
Region filter
Export
origin · China
targeted countries · 10
ASIA ·
6
China
·
India
·
Japan
·
South Korea
·
Saudi Arabia
·
Taiwan
EUROPE ·
3
Germany
·
United Kingdom
·
Italy
AMERICAS ·
1
United States
Sectors targeted
13 of 40
Government
100 actors
Aerospace
59 actors
Financial Services
74 actors
Healthcare
47 actors
Technology
60 actors
Telecom
72 actors
NGOs & Dissidents
56 actors
Energy / Utilities
59 actors
Education & Research
62 actors
Media & Journalism
49 actors
Industrials / Engineering
29 actors
Chemicals
20 actors
Private Sector (generic)
29 actors
Tactics, techniques, procedures
Threat types + MITRE ATT&CK mapping
THREAT TYPES
ESP · Espionage
MITRE ATT&CK · 9 techniques
Resource Development
· 2
T1583.006
Web Services
T1585
Establish Accounts
Initial Access
· 3
T1189
Drive-by Compromise
Execution
· 2
T1203
Exploitation for Client Execution
Command And Control
· 1
T1105
Ingress Tool Transfer
Stealth
· 1
T1027.002
Software Packing
GIR coverage
0 / 480 requirements satisfied
Open matrix
No GIRs mapped yet for this actor.
Open data
Machine-readable exports of this profile
JSON · REST
Actor record
Full profile via the public v1 API
STIX 2.1
Intrusion-set bundle
Deterministic ids · techniques + targeted countries
ATT&CK NAVIGATOR
Technique layer
9 techniques · layer format 4.5
Related actors
By origin and actor type
APT31
nation-state
China · 6 targets · since 2013
APT8
nation-state
China · 5 targets · since —
APT24
nation-state
China · 3 targets · since 2008
APT27
nation-state
China · 23 targets · since 2010
APT44
nation-state
Russia · 25 targets · since 2009
APT21
nation-state
China · 5 targets · since 2010
T1566.001
Spearphishing Attachment
T1566.002
Spearphishing Link
T1204.001
Malicious Link