APT5

First known appearance: 2005

Threat Actors: Undisclosed

Targets: Telecommunications and technology companies, particularly in Southeast Asia, as well as high-tech manufacturing firms and military application technology

Objective: To steal emails, procurement bids and proposals, documents on unmanned aerial vehicles (UAVs) and proprietary product specifications.

Overview: APT5 appears to be a large threat group that consists of several subgroups. It tends to focus on (satellite) telecommunications and technology companies based primarily in Southeast Asia. It steals information such as pricing data, contract negotiations, inventories and product deployment data

Associated malware: Leouncia

Typical attack vectors: APT5 often uses malware with keylogging capabilities to specifically target telecommunication companies’ corporate networks, employees and executives.

 

World political