Defense & Military — Cyber Threat Activity
Threat actors, incidents and malware targeting the Defense & Military sector — 1 recorded incident and 191 tracked groups.
- Recorded incidents: 1
- Incidents, trailing 180 days: 0
- Tracked threat actors: 191
- Malware families: 414
Threat actors targeting Defense & Military
- Salt Typhoon 1 incident
- RomCom researched targeting
- Lazarus Group researched targeting
- Volt Typhoon researched targeting
- Andariel researched targeting
- APT1 researched targeting
- APT10 researched targeting
- APT28 researched targeting
- APT29 researched targeting
- APT35 researched targeting
- APT38 researched targeting
- APT40 researched targeting
- Gamaredon Group researched targeting
- HAFNIUM researched targeting
- Kimsuky researched targeting
- MuddyWater researched targeting
- Sandworm Team researched targeting
- Turla researched targeting
- ZIRCONIUM researched targeting
- Handala researched targeting
- Snatch researched targeting
- 1937CN researched targeting
- Adrastea researched targeting
- AeroBlade researched targeting
Malware used against Defense & Military
Families used by the threat actors that target this sector, derived from actor tooling rather than observed in these incidents directly.
- Agent Tesla Malware
- Cobalt Strike Malware
- Impacket Tool
- Mimikatz Tool
- NotPetya Malware
- PlugX Malware
- PsExec Tool
- Qilin Malware
- Sliver Tool
- WannaCry Malware
- AdFind Tool
- AsyncRAT Tool
Where these victims are
Recent incidents
- US Army National Guard (unnamed state) 2024-03-01
Coverage. 76.7% of incidents in our log carry a sector classification; the remainder name a victim we have not placed in an industry. Counts here are a floor, not a total, and are not comparable between sectors of different sizes.