APT10 — APT Profile
menuPass is a threat group that has been active since at least 2006. Individual members of menuPass are known to have acted in association with the Chinese Ministry of State Security's (MSS) Tianjin State Security Bureau and worked for the Huaying Haitai Science and Technology Development Company.Also tracked as
menuPass, Cicada, POTASSIUM, Stone Panda, Red Apollo, CVNX, HOGFISH, BRONZE RIVERSIDE
Tools & malware
- win.mimikatz Credential Harvesting
Vendor research
- Hogfish Redleaves Campaign Accenture Security
- BRONZE STARLIGHT RANSOMWARE OPERATIONS USE HUI LOADER Counter Threat Unit Research Team
- CrowdCasts Monthly: You Have an Adversary Problem Crowdstrike
- APT10 (MenuPass Group): New Tools, Global Campaign Latest Manifestation of Longstanding Threat FireEye iSIGHT Intelligence
- POISON IVY: Assessing Damage and Extracting Intelligence FireEye
- APT10 Targeting Japanese Corporations Using Updated TTPs Matsuda, A., Muhammad I
- menuPass Returns with New Malware and New Attacks Against Japanese Academics and Organizations Miller-Osborn, J. and Grunzweig, J.
- Operation Cloud Hopper PwC and BAE Systems
- Japan-Linked Organizations Targeted in Long-Running and Sophisticated Attack Campaign Symantec
- United States of America v. Zhu Hua and Zhang Shilong United States District Court Southern District of New York (USDC SDNY)
- United States v. Zhu Hua Indictment US District Court Southern District of New York