PROMETHIUM__2020__Talos_Blog_Cisco_Talos_Intelligence_Group_-_Comprehensive_Threat_Intelligence_PROMETHIUM_extends_global_reach_with_StrongPity3_APT.pdf
ID: ab3bbc4f-04a9-4067-998c-eb8ae6174025
STIX ID: report--ab3bbc4f-04a9-4067-998c-eb8ae6174025
Threat Score
78/100
Uploaded: 2026-08-19
Published Date: 2020-06-30
Last Modified Date: 2020-06-30
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
PROMETHIUM/StrongPity is a long-running espionage operation that continues to broaden its victimology and geographic footprint through trojanized software installers, multi-stage malware components, and coordinated C2 infrastructure; the report documents multiple campaigns (2018–2020), domain clusters, and persistence techniques that suggest a professionally packaged, exportable toolkit capable of exfiltrating documents while evading some AV defenses.
