Inception — APT Profile
Inception is a cyber espionage group active since at least 2014. The group has targeted multiple industries and governmental entities primarily in Russia, but has also been active in the United States and throughout Europe, Asia, Africa, and the Middle East.Description reproduced from MITRE ATT&CK. © The MITRE Corporation, reproduced and distributed with permission.
Also tracked as
Inception Framework, Cloud Atlas, Clean Ursa, OXYGEN, G0100, ATK116, Blue Odin
IntelFusions coverage (1)
- Russian and Belarusian Government Networks Hit by Cloud Atlas Spy Campaign 2026-06-06 · Nation-State
Tools & malware
- LaZagne Credential Harvesting
- PowerShower Backdoor
- VBShower Dropper
Vendor research
- the original report Kaspersky
- Cloud Atlas: RedOctober APT is back in style Kaspersky
- Inception Attackers Target Europe with Year-old Office Vulnerability Unit 42
- Inception Framework: Alive and Well, and Hiding Behind Proxies Symantec
Countries linked to this actor
- Kazakhstan targets
- Russia targets
- Belarus targets