Axiom
MITRE
Type:
Unknown
Unknown
Country:
Unknown
Unknown
First seen:
Unknown
Unknown
Details:
[Axiom](https://attack.mitre.org/groups/G0001) is a suspected Chinese cyber espionage group that has targeted the aerospace, defense, government, manufacturing, and media sectors since at least 2008. Some reporting suggests a degree of overlap between [Axiom](https://attack.mitre.org/groups/G0001) and [Winnti Group](https://attack.mitre.org/groups/G0044) but the two groups appear to be distinct based on differences in reporting on TTPs and targeting.(Citation: Kaspersky Winnti April 2013)(Citation: Kaspersky Winnti June 2015)(Citation: Novetta Winnti April 2015)
MITRE ATT&CK:
View on MITRE
Techniques Used (16)
| ID | ATT&CK | Tactics |
|---|---|---|
| T1001.002 | Steganography | - |
| T1003 | OS Credential Dumping | - |
| T1005 | Data from Local System | - |
| T1021.001 | Remote Desktop Protocol | - |
| T1078 | Valid Accounts | - |
| T1189 | Drive-by Compromise | - |
| T1190 | Exploit Public-Facing Application | - |
| T1203 | Exploitation for Client Execution | - |
| T1546.008 | Accessibility Features | - |
| T1553 | Subvert Trust Controls | - |
| T1560 | Archive Collected Data | - |
| T1563.002 | RDP Hijacking | - |
| T1566 | Phishing | - |
| T1583.002 | DNS Server | - |
| T1583.003 | Virtual Private Server | - |
Aliases (195)
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Group 72
Related Malware (8)
Metadata
| ID: | 921 |
| Created: | 13/01/2026 17:48 |
| Updated: | 21/04/2026 04:00 |