APT
ATLAS
Atlas
Actors
147
Names
471
Sectors
40
Requirements
480
⌘K
▸
sign in
Atlas
Actors
147
Names
471
Sectors
40
Requirements
480
LOADING
Void Manticore (aka Void Manticore, Storm-0842) · APT Atlas
Actors
/
Nation-state / APT
/
Asia
Void Manticore
APT
IR · Iran
AKA
Storm-0842 · Karma
Microsoft
:
Plaid Rain
Targets
4
Sectors
12
Threat types
1
GIRs covered
0/480
Active since
2023
Pin to atlas
Watch
Share
Export
Also tracked as
1 vendor names · 2 other aliases
Open Rosetta Stone
Microsoft
Plaid Rain
UNATTRIBUTED ALIASES
Storm-0842
Karma
Victimology
Geographic footprint · 4 countries
Region filter
Export
origin · Iran
targeted countries · 4
EUROPE ·
1
Albania
ASIA ·
2
Israel
·
Lebanon
AMERICAS ·
1
United States
Sectors targeted
12 of 40
Government
100 actors
Defense
72 actors
Aerospace
59 actors
Aviation
22 actors
Financial Services
74 actors
Technology
60 actors
Telecom
72 actors
NGOs & Dissidents
56 actors
Energy / Utilities
59 actors
Education & Research
62 actors
Manufacturing (man)
50 actors
Legal & Professional
18 actors
Tactics, techniques, procedures
Threat types + MITRE ATT&CK mapping
THREAT TYPES
DIS · Disinformation
MITRE ATT&CK · 46 techniques
Resource Development
· 3
T1583.003
Virtual Private Server
T1583.004
Server
T1583.006
Web Services
Initial Access
· 3
T1190
Exploit Public-Facing Application
Execution
· 5
T1047
Windows Management Instrumentation
Persistence
· 2
T1098
Account Manipulation
Credential Access
· 4
T1003.001
LSASS Memory
Lateral Movement
· 1
T1021.001
Remote Desktop Protocol
Collection
· 8
T1005
Data from Local System
T1074
Data Staged
T1113
Screen Capture
Exfiltration
· 1
T1041
Exfiltration Over C2 Channel
Impact
· 6
T1485
Data Destruction
Command And Control
· 4
T1071.001
Web Protocols
T1102
Web Service
Stealth
· 9
T1027.015
Compression
T1036.004
Masquerade Task or Service
GIR coverage
0 / 480 requirements satisfied
Open matrix
No GIRs mapped yet for this actor.
Open data
Machine-readable exports of this profile
JSON · REST
Actor record
Full profile via the public v1 API
STIX 2.1
Intrusion-set bundle
Deterministic ids · techniques + targeted countries
ATT&CK NAVIGATOR
Technique layer
46 techniques · layer format 4.5
Related actors
By origin and actor type
APT31
nation-state
China · 6 targets · since 2013
APT8
nation-state
China · 5 targets · since —
APT24
nation-state
China · 3 targets · since 2008
APT27
nation-state
China · 23 targets · since 2010
APT44
nation-state
Russia · 25 targets · since 2009
APT21
nation-state
China · 5 targets · since 2010
T1199
Trusted Relationship
T1566
Phishing
T1059.001
PowerShell
T1059.006
Python
T1072
Software Deployment Tools
T1651
Cloud Administration Command
T1547.001
Registry Run Keys / Startup Folder
T1110
Brute Force
T1110.004
Credential Stuffing
T1552.002
Credentials in Registry
T1114.002
Remote Email Collection
T1119
Automated Collection
T1123
Audio Capture
T1125
Video Capture
T1560.001
Archive via Utility
T1486
Data Encrypted for Impact
T1490
Inhibit System Recovery
T1561.001
Disk Content Wipe
T1561.002
Disk Structure Wipe
T1657
Financial Theft
T1105
Ingress Tool Transfer
T1219.002
Remote Desktop Software
T1036.005
Match Legitimate Resource Name or Location
T1078
Valid Accounts
T1078.002
Domain Accounts
T1078.004
Cloud Accounts
T1564.003
Hidden Window
T1679
Selective Exclusion
T1684.001
Impersonation