🌐Stealth Falcon
🌐 Stealth Falcon is a tracked threat actor in the Clankerusecase corpus. ??-aligned. Primary motivation: Unknown. We map 14 detection use cases to this actor across 16 MITRE ATT&CK techniques, with 0 threat-intel articles citing them.
14Use cases
0Articles
16Techniques
0IOCs
About this actor (MITRE)
[Stealth Falcon](https://attack.mitre.org/groups/G0038) is a threat group that has conducted targeted spyware attacks against Emirati journalists, activists, and dissidents since at least 2012. Circumstantial evidence suggests there could be a link between this group and the United Arab Emirates (UAE) government, but that has not been confirmed. (Citation: Citizen Lab Stealth Falcon May 2016)
Known aliases
Stealth Falcon
Top techniques
All other tracked techniques
T1033 · System Owner/User DiscoveryT1041 · Exfiltration Over C2 ChannelT1047 · Windows Management InstrumentationT1053.005 · Scheduled TaskT1057 · Process DiscoveryT1059 · Command and Scripting InterpreterT1059.001 · PowerShellT1071.001 · Web ProtocolsT1082 · System Information DiscoveryT1555 · Credentials from Password StoresT1555.003 · Credentials from Web BrowsersT1555.004 · Windows Credential ManagerT1573.001 · Symmetric Cryptography