Stealth Falcon
MISP
Tipo:
Nation-state
Nation-state
Paese:
AE
AE
Prima attivita:
Unknown
Unknown
Dettagli:
[Stealth Falcon](https://attack.mitre.org/groups/G0038) is a threat group that has conducted targeted spyware attacks against Emirati journalists, activists, and dissidents since at least 2012. Circumstantial evidence suggests there could be a link between this group and the United Arab Emirates (UAE) government, but that has not been confirmed. (Citation: Citizen Lab Stealth Falcon May 2016)
MITRE ATT&CK:
View on MITRE
Tecniche Utilizzate (16)
| ID | ATT&CK | Tattiche |
|---|---|---|
| T1005 | Data from Local System | - |
| T1012 | Query Registry | - |
| T1016 | System Network Configuration Discovery | - |
| T1033 | System Owner/User Discovery | - |
| T1041 | Exfiltration Over C2 Channel | - |
| T1047 | Windows Management Instrumentation | - |
| T1053.005 | Scheduled Task | - |
| T1057 | Process Discovery | - |
| T1059 | Command and Scripting Interpreter | - |
| T1059.001 | PowerShell | - |
| T1071.001 | Web Protocols | - |
| T1082 | System Information Discovery | - |
| T1555 | Credentials from Password Stores | - |
| T1555.003 | Credentials from Web Browsers | - |
| T1555.004 | Windows Credential Manager | - |
Alias (206)
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
FruityArmor
G0038
Metadata
| ID: | 74 |
| Created: | 13/01/2026 17:48 |
| Updated: | 06/03/2026 04:00 |