🌐Aquatic Panda
🌐 Aquatic Panda is a tracked threat actor in the Clankerusecase corpus. ??-aligned. Primary motivation: State. We map 14 detection use cases to this actor across 35 MITRE ATT&CK techniques, with 0 threat-intel articles citing them.
14Use cases
0Articles
35Techniques
0IOCs
About this actor (MITRE)
[Aquatic Panda](https://attack.mitre.org/groups/G0143) is a suspected China-based threat group with a dual mission of intelligence collection and industrial espionage. Active since at least May 2020, [Aquatic Panda](https://attack.mitre.org/groups/G0143) has primarily targeted entities in the telecommunications, technology, and government sectors.(Citation: CrowdStrike AQUATIC PANDA December 2021)
Known aliases
Aquatic Panda
Top techniques
All other tracked techniques
T1021 · Remote ServicesT1021.001 · Remote Desktop ProtocolT1021.002 · SMB/Windows Admin SharesT1021.004 · SSHT1027.010 · Command ObfuscationT1033 · System Owner/User DiscoveryT1036.004 · Masquerade Task or ServiceT1036.005 · Match Legitimate Resource Name or LocationT1047 · Windows Management InstrumentationT1059.001 · PowerShellT1059.003 · Windows Command ShellT1059.004 · Unix ShellT1070.003 · Clear Command HistoryT1070.004 · File DeletionT1078.002 · Domain AccountsT1082 · System Information DiscoveryT1087 · Account DiscoveryT1105 · Ingress Tool TransferT1112 · Modify RegistryT1218.011 · Rundll32T1518.001 · Security Software DiscoveryT1543.003 · Windows ServiceT1550.002 · Pass the HashT1560.001 · Archive via UtilityT1574.001 · DLLT1574.006 · Dynamic Linker HijackingT1588.001 · MalwareT1588.002 · ToolT1595.002 · Vulnerability ScanningT1654 · Log EnumerationT1685 · Disable or Modify ToolsT1685.005 · Clear Windows Event Logs