Hellsing
This threat actor uses spear-phishing techniques to compromise diplomatic targets in Southeast Asia, India, and the United States. It also seems to have targeted the APT 30. Possibly uses the same infrastructure as Mirage
Hellsing is a Chinese-aligned cyber espionage group targeting Southeast Asian governments.
Hellsing is a suspected Chinese nation-state cyber threat group targeting diplomatic entities in Southeast Asia, India, and the United States. It primarily focuses on Government, Infrastructure, and Diplomacy sectors, using spear-phishing as its main attack vector for compromise. The group may share infrastructure with the Mirage threat actor and has been observed targeting APT 30. Defenders should prioritize monitoring for spear-phishing campaigns aimed at diplomatic personnel and hunt for known indicators of compromise (IOCs) associated with Mirage infrastructure.
This threat actor uses spear-phishing techniques to compromise diplomatic targets in Southeast Asia, India, and the United States. It also seems to have targeted the APT 30. Possibly uses the same infrastructure as Mirage
The Hellsing group's main tactic is targeted spear-phishing attacks.
The Hellsing group possibly shares the same infrastructure as Mirage.
Every claim on this page is drawn from the cited source (MISP Galaxy, MITRE ATT&CK, ransomware.live) — no attribution is invented.