Kill Chain & Diamond Model Analysis
Map a threat actor or campaign across the Cyber Kill Chain and Diamond Model of Intrusion.
StucxTeam
(threat actor)
0 techniques
40 tools/malware
1 vulnerabilities
40 IOCs
1/7 stages covered
Deepest: Exploitation
Stage risk:
Critical
High
Medium
None
Indicators of Compromise (40)
ATT&CK Tactic Coverage
Reconnaissance
Resource Development
Initial Access
Execution
Persistence
Privilege Escalation
Defense Evasion
Credential Access
Discovery
Lateral Movement
Collection
Command & Control
Exfiltration
Impact
Diamond Model of Intrusion
Adversary · Capability · Infrastructure · Victim
StucxTeam
Type: Unknown Active
BokBot
Russian Cyber Army Team
Ukraine began
cpyy
APT3
+14 more
40 tool(s)/malware 1 CVE(s)
Targeted Sectors
government
defense
financial-services
non-profit
energy
telecommunications
media
aerospace
education
healthcare
manufacturing
information-technology
maritime
think-tank
critical-infrastructure
pharmaceutical
chemical
mining
utilities
hospitality
legal-services
nuclear
entertainment
aviation
Targeted Countries
US
CN
BR
IL
GB
IN
JP
DE
KR
RU
FR
IR
SA
TW
CA
TR
UA
PL
AU
KZ
PK
AE
VN
ES
SG
NL
IQ
BY
IT
SY
MX
RO
EG
AZ
Diamond Model Meta-Features
Direction
Adversary → Infrastructure → Victim
Adversary → Capability
Adversary → Infrastructure
Capability → Victim
Infrastructure → Victim
Diamond Model edges