APT10__2017__cloud-hopper-annex-b-final.pdf
ID: 043ef05d-3313-4462-abc3-fa3e64914c51
STIX ID: report--043ef05d-3313-4462-abc3-fa3e64914c51
Threat Score
90/100
Uploaded: 2026-08-07
Published Date: 2017-04-06
Last Modified Date: 2017-04-06
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
Operation Cloud Hopper — Technical Annex (April 2017) provides detailed technical analysis of APT10’s tooling, malware families (EvilGrab, ChChes, RedLeaves, Poison Ivy, PlugX, Quasar), repurposed scripts and post‑exploit tools, and associated C2 infrastructure and IOCs; it documents spear‑phishing delivery, MSP supply‑chain targeting, credential theft, lateral movement and data exfiltration techniques and includes defensive recommendations.
