logo

Naikon__2015__TheNaikonAPT-MsnMM1.pdf

ID: b84732a6-3207-4a50-859a-8a830e2507e0

STIX ID: report--b84732a6-3207-4a50-859a-8a830e2507e0

Threat Score

85/100

Uploaded: 2026-08-19

Published Date: 2015-05-20

Last Modified Date: 2015-05-20

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
**Executive summary:** This Kaspersky-style intelligence report documents the Naikon (MsnMM) APT campaign targeting ASEAN organizations and diplomats using CVE-2012-0158 and RTLO spear-phishing to deploy a family of backdoors (sslMM, winMM, sys10, xsPlus/naikon, rarstone, inject), second-stage reconnaissance tools (Honker/HDoor variants and legitimate admin utilities), and extensive C2/IOC lists (MD5s, domains, URLs), demonstrating focused geopolitical espionage with robust social-engineering and lateral-movement capabilities.