Naikon__2015__TheNaikonAPT-MsnMM1.pdf
ID: b84732a6-3207-4a50-859a-8a830e2507e0
STIX ID: report--b84732a6-3207-4a50-859a-8a830e2507e0
Threat Score
85/100
Uploaded: 2026-08-19
Published Date: 2015-05-20
Last Modified Date: 2015-05-20
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
**Executive summary:** This Kaspersky-style intelligence report documents the Naikon (MsnMM) APT campaign targeting ASEAN organizations and diplomats using CVE-2012-0158 and RTLO spear-phishing to deploy a family of backdoors (sslMM, winMM, sys10, xsPlus/naikon, rarstone, inject), second-stage reconnaissance tools (Honker/HDoor variants and legitimate admin utilities), and extensive C2/IOC lists (MD5s, domains, URLs), demonstrating focused geopolitical espionage with robust social-engineering and lateral-movement capabilities.
