From 142d4aeaefd079f7422e13b0a7a83b8c4ddb66eb Mon Sep 17 00:00:00 2001 From: Sebastien Larinier Date: Wed, 26 Apr 2023 14:26:48 +0200 Subject: [PATCH 1/3] Update threat-actor.json --- clusters/threat-actor.json | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/clusters/threat-actor.json b/clusters/threat-actor.json index e1fbdfce..47a3694e 100644 --- a/clusters/threat-actor.json +++ b/clusters/threat-actor.json @@ -10111,13 +10111,17 @@ "Hong Kong", "Malaysia", "India", - "Taiwan" + "Taiwan", + "Macao", + "Nigeria", + " Daggerfly" ], "country": "CN", "refs": [ "https://blog.malwarebytes.com/threat-analysis/2020/07/chinese-apt-group-targets-india-and-hong-kong-using-new-variant-of-mgbot-malware", "https://vb2020.vblocalhost.com/uploads/VB2020-43.pdf", - "https://www.youtube.com/watch?v=LeKi0KfzOow&list=PLffioUnqXWkdzWcZXH-bzPVgcs2R4r7iS&index=1&t=2154s" + "https://www.youtube.com/watch?v=LeKi0KfzOow&list=PLffioUnqXWkdzWcZXH-bzPVgcs2R4r7iS&index=1&t=2154s", + "https://www.welivesecurity.com/2023/04/26/evasive-panda-apt-group-malware-updates-popular-chinese-software/" ], "synonyms": [ "Evasive Panda" From d60cca9302051b34381f22ac3fdef2a101bb6724 Mon Sep 17 00:00:00 2001 From: Sebastien Larinier Date: Wed, 26 Apr 2023 21:46:33 +0200 Subject: [PATCH 2/3] Update threat-actor.json fix mistake --- clusters/threat-actor.json | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/clusters/threat-actor.json b/clusters/threat-actor.json index 47a3694e..e478bfa0 100644 --- a/clusters/threat-actor.json +++ b/clusters/threat-actor.json @@ -10113,8 +10113,7 @@ "India", "Taiwan", "Macao", - "Nigeria", - " Daggerfly" + "Nigeria" ], "country": "CN", "refs": [ @@ -10124,7 +10123,8 @@ "https://www.welivesecurity.com/2023/04/26/evasive-panda-apt-group-malware-updates-popular-chinese-software/" ], "synonyms": [ - "Evasive Panda" + "Evasive Panda", + " Daggerfly" ] }, "uuid": "62710572-e416-419d-bb1f-81ffc1ddc976", From ddc285581d9808d0463c10daec16f2140e4d2120 Mon Sep 17 00:00:00 2001 From: Sebastien Larinier Date: Wed, 26 Apr 2023 21:52:57 +0200 Subject: [PATCH 3/3] Update threat-actor.json --- clusters/threat-actor.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/clusters/threat-actor.json b/clusters/threat-actor.json index e478bfa0..dd59e6d8 100644 --- a/clusters/threat-actor.json +++ b/clusters/threat-actor.json @@ -10113,7 +10113,7 @@ "India", "Taiwan", "Macao", - "Nigeria" + "Nigeria" ], "country": "CN", "refs": [