Also known as: Advanced Persistent Threat 39, Chafer, Cadelspy, Remexi, ITG07, WannaCryptor, Fox Kitten, UNC757, Parisite, BlackCat, CamoFei, Gamaredon APT, REvil, Mustang Panda
UAC-0184 is a threat actor targeting Ukrainian organizations in Finland, using the Remcos Remote Access Trojan in their attacks. They have been observed utilizing steganographic image files and the IDAT Loader to deliver the malware. The group has targeted the Armed Forces of Ukraine and impersonated military recruitment processes to infect systems with the Remcos RAT.
Targeted Sectors
Targeted Countries / Regions
No AI analysis yet.
No campaigns linked yet.
No observed data linked yet.
18
Techniques
40
Tools
0
Campaigns
12
IOCs
0
Observed Data
8
Tactics