CostaRicto
MISP
Type:
Unknown
Unknown
Country:
Unknown
Unknown
First seen:
Unknown
Unknown
Details:
CostaRicto is a cyber-espionage threat actor that operates as a mercenary group, offering its services to various clients globally. They use bespoke malware tools and sophisticated techniques like VPN proxy and SSH tunnelling. While their targets are scattered across different regions, there is a concentration in South Asia.
MITRE ATT&CK:
View on MITRE
Metadata
| ID: | 533 |
| Created: | 13/01/2026 17:48 |
| Updated: | 07/03/2026 04:00 |