TT Malware Log

マルウェア / サイバー攻撃 / 解析技術 に関する「個人」の調査・研究・参照ログ

How Microsoft names threat actors

【公開情報】

◆How Microsoft names threat actors (Microsoft, 2023/04/19)
https://learn.microsoft.com/en-us/microsoft-365/security/intelligence/microsoft-threat-actor-naming?view=o365-worldwide

旧名称
新名称
別名
ACTINIUM Aqua Blizzard Russia UNC530, Primitive Bear, Gamaredon
AMERICIUM Pink Sandstorm Iran Agrius, Deadwood, BlackShadow, SharpBoys
BARIUM Brass Typhoon China APT41
BISMUTH Canvas Cyclone Vietnam APT32, OceanLotus
BOHRIUM Smoke Sandstorm Iran
BROMINE Ghost Blizzard Russia Energetic Bear, Crouching Yeti
CERIUM Ruby Sleet North Korea
CHIMBORAZO Spandex Tempest Financially motivated TA505
CHROMIUM Charcoal Typhoon China ControlX
COPERNICIUM Sapphire Sleet North Korea Genie Spider, BlueNoroff
CURIUM Crimson Sandstorm Iran TA456, Tortoise Shell
DUBNIUM Zigzag Hail South Korea Dark Hotel, Tapaoux
ELBRUS Sangria Tempest Financially motivated Carbon Spider, FIN7
EUROPIUM Hazel Sandstorm Iran Cobalt Gypsy, APT34, OilRig
GADOLINIUM Gingham Typhoon China APT40, Leviathan, TEMP.Periscope, Kryptonite Panda
GALLIUM Granite Typhoon China
HAFNIUM Silk Typhoon China
HOLMIUM Peach Sandstorm Iran APT33, Refined Kitten
IRIDIUM Seashell Blizzard Russia Sandworm
KNOTWEED Denim Tsunami Private sector offensive actor DSIRF
KRYPTON Secret Blizzard Russia Venomous Bear, Turla, Snake
LAWRENCIUM Pearl Sleet North Korea
MANGANESE Mulberry Typhoon China APT5, Keyhole Panda, TABCTENG
MERCURY Mango Sandstorm Iran MuddyWater, SeedWorm, Static Kitten, TEMP.Zagros
NEPTUNIUM Cotton Sandstorm Iran Vice Leaker
NICKEL Nylon Typhoon China ke3chang, APT15, Vixen Panda
NOBELIUM Midnight Blizzard Russia APT29, Cozy Bear
OSMIUM Opal Sleet North Korea Konni
PARINACOTA Wine Tempest Financially motivated Wadhrama
PHOSPHORUS Mint Sandstorm Iran APT35, Charming Kitten
POLONIUM Plaid Rain Lebanon
RADIUM Raspberry Typhoon China APT30, LotusBlossom
RUBIDIUM Lemon Sandstorm Iran Fox Kitten, UNC757, PioneerKitten
SEABORGIUM Star Blizzard Russia Callisto, Reuse Team
SILICON Marbled Dust Turkey Sea Turtle
SOURGUM Caramel Tsunami Private sector offensive actor Candiru
SPURR Tomato Tempest Financially motivated Vatet
STRONTIUM Forest Blizzard Russia APT28, Fancy Bear
TAAL Camouflage Tempest Financially motivated FIN6, Skeleton Spider
THALLIUM Emerald Sleet North Korea Kimsuky, Velvet Chollima
ZINC Diamond Sleet North Korea Labyrinth Chollima, Lazarus
ZIRCONIUM Violet Typhoon China APT31




旧名称
新名称
別名
DEV-0146 Pumpkin Sandstorm Iran ZeroCleare
DEV-0193 Periwinkle Tempest Financially motivated Wizard Spider, UNC2053
DEV-0196 Carmine Tsunami Private sector offensive actor QuaDream
DEV-0198 (NEPTUNIUM) Cotton Sandstorm Iran Vice Leaker
DEV-0206 Mustard Tempest Financially motivated Purple Vallhund
DEV-0215 (LAWRENCIUM) Pearl Sleet North Korea
DEV-0227 (AMERICIUM) Pink Sandstorm Iran Agrius, Deadwood, BlackShadow, SharpBoys
DEV-0228 Cuboid Sandstorm Iran
DEV-0234 Lilac Typhoon China
DEV-0237 Pistachio Tempest Financially motivated FIN12
DEV-0243 Manatee Tempest Financially motivated EvilCorp, UNC2165, Indrik Spider
DEV-0257 Storm-0257 Group in development UNC1151
DEV-0322 Circle Typhoon China
DEV-0336 Night Tsunami Private sector offensive actor NSO Group
DEV-0343 Gray Sandstorm Iran
DEV-0401 Cinnamon Tempest Financially motivated Emperor Dragonfly, Bronze Starlight
DEV-0500 Marigold Sandstorm Iran Moses Staff
DEV-0504 Velvet Tempest Financially motivated
DEV-0530 Storm-0530 North Korea H0lyGh0st
DEV-0537 Strawberry Tempest Financially motivated LAPSUS$
DEV-0586 Cadet Blizzard Russia
DEV-0605 Wisteria Tsunami Private sector offensive actor CyberRoot
DEV-0665 Sunglow Blizzard Russia
DEV-0796 Phlox Tempest Financially motivated ClickPirate, Chrome Loader, Choziosi loader
DEV-0832 Vanilla Tempest Financially motivated
DEV-0950 Lace Tempest Financially motivated FIN11, TA505

Copyright (C) 谷川哲司 (Tetsuji Tanigawa) 1997 - 2023