Metador

MISP
Type:
Unknown
Country:
Unknown
First seen:
Unknown
Details:

[Metador](https://attack.mitre.org/groups/G1013) is a suspected cyber espionage group that was first reported in September 2022. [Metador](https://attack.mitre.org/groups/G1013) has targeted a limited number of telecommunication companies, internet service providers, and universities in the Middle East and Africa. Security researchers named the group [Metador](https://attack.mitre.org/groups/G1013) based on the "I am meta" string in one of the group's malware samples and the expectation of Spanish-language responses from C2 servers.(Citation: SentinelLabs Metador Sept 2022)

MITRE ATT&CK: View on MITRE
Techniques Used (9)
ID ATT&CK Tactics
T1027.013 Encrypted/Encoded File -
T1059.003 Windows Command Shell -
T1070.004 File Deletion -
T1071.001 Web Protocols -
T1095 Non-Application Layer Protocol -
T1105 Ingress Tool Transfer -
T1546.003 Windows Management Instrumentation Event Subscription -
T1588.001 Malware -
T1588.002 Tool -
Metadata
ID: 451
Created: 13/01/2026 17:48
Updated: 23/04/2026 04:00