Overview 2 indicators
PLATINUM is an activity group that has targeted victims since at least 2009. The group has focused on targets associated with governments and related organizations in South and Southeast Asia.
| domain | 1 | G0068-domain.txt |
| url | 1 | G0068.json |
Techniques 11 ATT&CK
Open in ATT&CK Navigator → or download the layer (11 techniques, layer 4.5)
- T1003.001 LSASS Memory
- T1036 Masquerading
- T1055 Process Injection
- T1056.001 Keylogging
- T1056.004 Credential API Hooking
- T1068 Exploitation for Privilege Escalation
- T1095 Non-Application Layer Protocol
- T1105 Ingress Tool Transfer
- T1189 Drive-by Compromise
- T1204.002 Malicious File
- T1566.001 Spearphishing Attachment
Software 3
Principal sources 3 reports
Ranked by how many of this actor's indicators each report brought in.
- 1securelist.com/titanium-the-platinum-group-strikes-aga…
- 1securelist.com/platinum-is-back/91135
- 1otx.alienvault.com/pulse/5cf7ccd8e9e95f3f24518a6a
Timeline 2 indicators
Each entry is a batch of indicators that appeared upstream on one date, under the report it was filed with.
2 shown
No indicator matches. Only the most recent 300 are on this page — the rest are in the JSON.
-
securelist.com/titanium-the-platinum-group-strikes-aga…
http://70.39.115.196 -
securelist.com/platinum-is-back/91135 · otx.alienvault.com/pulse/5cf7ccd8e9e95f3f24518a6a
happiness.freevar.com