logo

APT10__2017__cloud-hopper-annex-b-final.pdf

ID: 043ef05d-3313-4462-abc3-fa3e64914c51

STIX ID: report--043ef05d-3313-4462-abc3-fa3e64914c51

Threat Score

90/100

Uploaded: 2026-08-07

Published Date: 2017-04-06

Last Modified Date: 2017-04-06

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
Operation Cloud Hopper — Technical Annex (April 2017) provides detailed technical analysis of APT10’s tooling, malware families (EvilGrab, ChChes, RedLeaves, Poison Ivy, PlugX, Quasar), repurposed scripts and post‑exploit tools, and associated C2 infrastructure and IOCs; it documents spear‑phishing delivery, MSP supply‑chain targeting, credential theft, lateral movement and data exfiltration techniques and includes defensive recommendations.