TianWu
TianWu Çin mənşəli bir threat actor-dur, China, Hong Kong, Kazakhstan, Taiwan və Philippines-də private sector, gambling, gaming, IT və telecommunications sahələrini hədəf alır.
TianWu is a likely Chinese APT group known for supply chain attacks and ransomware tactics.
TianWu is a likely Chinese nation-state APT group. It primarily targets the private sector, gambling, gaming, telecommunications, government entities, and dissidents in China, Hong Kong, Kazakhstan, Taiwan, and the Philippines. Their TTPs are linked to 'Mustang Panda', leveraging tools like PlugX and Cobalt Strike, along with supply chain compromise and ransomware tactics. Defenders should focus on email security, network segmentation, and anomaly-based detection systems.
TianWu Çin mənşəli bir threat actor-dur, China, Hong Kong, Kazakhstan, Taiwan və Philippines-də private sector, gambling, gaming, IT və telecommunications sahələrini hədəf alır.
TianWu primarily operates in China, Hong Kong, Kazakhstan, Taiwan, and the Philippines.
The TianWu group uses tools like PlugX and Cobalt Strike.
Every claim on this page is drawn from the cited source (MISP Galaxy, MITRE ATT&CK, ransomware.live) — no attribution is invented.