ITG05

Actor Type Nation State
Attributed to Nation Russia
Directly Linked Intrusion Sets Fancy Bear , Forest Blizzard , APT28 , STRONTIUM

ITG05 is a likely Russian state-sponsored intrusion set tracked by researchers at IBM X-Force. According to X-Force, the ITG05 is made up of multiple activity clusters and shows overlaps with intrusion sets tracked by other researchers as APT28, UAC-028, Fancy Bear, and Forest Blizzard.

According to reporting, their campaigns are highly targeted, focusing on entities in at least 13 countries worldwide, primarily in Europe.

Cyber Threat Graph Context

Explore how this Intrusion Set relates to the wider threat graph

ITG05 Threat Reports

Report

Ongoing ITG05 operations leverage evolving malware arsenal in global campaigns

This Security Intelligence blog post by researchers at IBM's X-Force describes activity by ITG05 - a group which shows overlap with APT28/Forest ...

References