Knowledge (XXG)

Stealth Falcon

Source 📝

271: 218: 657: 677: 312: 178: 343: 829: 369: 647: 591: 637: 406: 761: 305: 1175: 642: 1309: 1291: 792: 570: 336: 255: 1315: 841: 802: 437: 616: 1817: 1375: 1321: 896: 787: 723: 560: 462: 298: 782: 555: 662: 374: 364: 329: 49: 144: 1536: 926: 713: 652: 611: 509: 61: 1812: 1031: 766: 529: 1720: 1061: 916: 708: 601: 545: 197: 1201: 1170: 797: 1339: 906: 824: 730: 703: 40:
attacks against journalists and human rights activists. The group uses a variety of attack vectors, including
1495: 1159: 632: 565: 411: 1369: 1225: 1056: 718: 248: 1510: 1345: 1129: 493: 1273: 1154: 866: 575: 524: 519: 23: 1822: 1772: 1644: 672: 488: 1782: 1777: 1674: 1303: 1066: 992: 682: 483: 217: 1787: 1669: 1639: 1243: 1099: 457: 421: 278: 241: 282: 225: 1715: 1567: 1490: 1139: 1076: 951: 400: 159: 1725: 1700: 1664: 1592: 1505: 1500: 1144: 936: 846: 550: 1464: 1459: 1149: 1134: 1124: 1119: 1026: 1021: 1016: 961: 416: 45: 37: 1806: 1587: 1046: 1005: 1001: 997: 179:"Stealth Falcon group uses custom spyware, fake journalists to target UAE dissidents" 1531: 1485: 1285: 1249: 1104: 1094: 987: 982: 977: 851: 667: 596: 1767: 1757: 1705: 1613: 1557: 1469: 1418: 1279: 1109: 836: 467: 125: 104:"Keep Calm and (Don't) Enable Macros: A New Threat Actor Targets UAE Dissidents" 103: 30: 1710: 1695: 1623: 1413: 1363: 1267: 1219: 1195: 1183: 1041: 966: 956: 946: 931: 891: 816: 447: 270: 41: 1741: 1618: 1582: 1572: 1444: 1261: 1011: 941: 881: 442: 1649: 1577: 1562: 1381: 1357: 1231: 1213: 1114: 1036: 871: 856: 756: 735: 514: 198:""Stealth Falcon" Threat Group Targets UAE Dissidents - SecurityWeek.Com" 81: 1679: 1552: 1515: 1449: 1428: 1398: 1351: 1333: 1255: 1189: 971: 886: 876: 861: 321: 1762: 1654: 1608: 1423: 1237: 1207: 1086: 1071: 901: 740: 452: 1387: 1327: 1297: 606: 1659: 1454: 698: 325: 145:"Stealth Falcon spyware targeting UAE critics, say researchers" 638:
Hollywood Presbyterian Medical Center ransomware incident
29:
The nickname "Stealth Falcon" was given to the group by
286: 229: 1750: 1734: 1688: 1632: 1601: 1545: 1524: 1478: 1437: 1406: 1397: 1168: 1085: 915: 815: 775: 749: 691: 625: 584: 538: 502: 476: 430: 393: 386: 16:
Cybercrime group affiliated with Emirati government
119: 117: 160:"Keep Calm and (Don't) Enable Macros: Appendices" 102:Bill Marczak; John Scott-Railton (29 May 2016). 678:Russian interference in the 2016 U.S. elections 97: 95: 26:(UAE) which is associated with Project Raven. 337: 306: 249: 8: 126:"Stealth Falcon spyware used on UAE critics" 648:Democratic National Committee cyber attacks 82:"Group: Stealth Falcon - MITRE ATT&CK™" 1403: 592:Office of Personnel Management data breach 390: 344: 330: 322: 313: 299: 256: 242: 22:is a cybercrime group affiliated to the 224:This organization-related article is a 73: 7: 267: 265: 214: 212: 643:Commission on Elections data breach 36:The group has been known to deploy 285:. You can help Knowledge (XXG) by 228:. You can help Knowledge (XXG) by 14: 803:Jeff Bezos phone hacking incident 1376:Microarchitectural Data Sampling 612:Ukrainian Power Grid Cyberattack 520:Cyberterrorism attack of June 25 269: 216: 724:2017 Ukraine ransomware attacks 561:2014 JPMorgan Chase data breach 556:2014 celebrity nude photo leak 196:Eduard Kovacs (May 31, 2016). 1: 793:Bulgarian revenue agency hack 571:Russian hacker password theft 143:Bisson, David (1 June 2016). 927:Bangladesh Black Hat Hackers 403:(publication of 2009 events) 158:Bill Marczak (29 May 2016). 124:Ali Taherian (Jun 7, 2016). 62:DarkMatter (Emirati company) 788:Baltimore ransomware attack 1839: 1062:Tailored Access Operations 709:WannaCry ransomware attack 602:Ashley Madison data breach 546:Anthem medical data breach 463:PlayStation network outage 264: 211: 798:WhatsApp snooping scandal 663:Indian Bank data breaches 357: 177:Smith, Ms (30 May 2016). 1340:Speculative Store Bypass 907:Ukrainian Cyber Alliance 704:2017 Macron e-mail leaks 1818:Computer security stubs 714:Westminster data breach 633:Bangladesh Bank robbery 576:2014 Yahoo! data breach 566:2014 Sony Pictures hack 525:2013 Yahoo! data breach 510:South Korea cyberattack 412:Operation Olympic Games 407:Australian cyberattacks 1057:Syrian Electronic Army 767:SingHealth data breach 530:Singapore cyberattacks 468:RSA SecurID compromise 1346:Lazy FP state restore 1130:Kristoffer von Hassel 783:Sri Lanka cyberattack 653:Vietnam Airport Hacks 494:Operation High Roller 1292:Silent Bob is Silent 352:Hacking in the 2010s 202:www.securityweek.com 24:United Arab Emirates 1226:SS7 vulnerabilities 762:Atlanta cyberattack 731:Equifax data breach 489:Stratfor email leak 438:Canadian government 417:Operation ShadowNet 1813:Organization stubs 1675:Petya and NotPetya 1304:ROCA vulnerability 1067:The Shadow Brokers 993:Iranian Cyber Army 919:persistent threats 719:Petya and NotPetya 683:2016 Bitfinex hack 658:DCCC cyber attacks 617:SWIFT banking hack 50:social engineering 1800: 1799: 1796: 1795: 1788:ZeroAccess botnet 1100:Mustafa Al-Bassam 867:New World Hackers 830:associated events 811: 810: 607:VTech data breach 458:Operation AntiSec 422:Operation Payback 381: 380: 294: 293: 279:computer security 237: 236: 1830: 1404: 1077:Yemen Cyber Army 401:Operation Aurora 391: 360: 359: 346: 339: 332: 323: 315: 308: 301: 273: 266: 258: 251: 244: 220: 213: 206: 205: 193: 187: 186: 174: 168: 167: 155: 149: 148: 147:. Graham Cluley. 140: 134: 133: 130:scmagazineuk.com 121: 112: 111: 99: 90: 89: 86:attack.mitre.org 78: 1838: 1837: 1833: 1832: 1831: 1829: 1828: 1827: 1803: 1802: 1801: 1792: 1746: 1730: 1684: 1628: 1597: 1541: 1520: 1474: 1433: 1393: 1173: 1171:vulnerabilities 1164: 1081: 974:(confederation) 937:Charming Kitten 918: 911: 847:Goatse Security 807: 771: 745: 736:Deloitte breach 687: 673:Dyn cyberattack 621: 580: 551:Operation Tovar 534: 498: 472: 426: 387:Major incidents 382: 353: 350: 320: 319: 263: 262: 210: 209: 195: 194: 190: 176: 175: 171: 164:The Citizen Lab 157: 156: 152: 142: 141: 137: 123: 122: 115: 108:The Citizen Lab 101: 100: 93: 80: 79: 75: 70: 58: 17: 12: 11: 5: 1836: 1834: 1826: 1825: 1820: 1815: 1805: 1804: 1798: 1797: 1794: 1793: 1791: 1790: 1785: 1780: 1775: 1770: 1765: 1760: 1754: 1752: 1748: 1747: 1745: 1744: 1738: 1736: 1732: 1731: 1729: 1728: 1723: 1718: 1713: 1708: 1703: 1698: 1692: 1690: 1686: 1685: 1683: 1682: 1677: 1672: 1667: 1662: 1657: 1652: 1647: 1642: 1636: 1634: 1630: 1629: 1627: 1626: 1621: 1616: 1611: 1605: 1603: 1599: 1598: 1596: 1595: 1590: 1585: 1580: 1575: 1570: 1565: 1560: 1558:Black Energy 3 1555: 1549: 1547: 1543: 1542: 1540: 1539: 1534: 1528: 1526: 1522: 1521: 1519: 1518: 1513: 1508: 1503: 1498: 1493: 1488: 1482: 1480: 1476: 1475: 1473: 1472: 1467: 1465:Metulji botnet 1462: 1457: 1452: 1447: 1441: 1439: 1435: 1434: 1432: 1431: 1426: 1421: 1419:Black Energy 2 1416: 1410: 1408: 1401: 1395: 1394: 1392: 1391: 1385: 1379: 1373: 1367: 1361: 1355: 1349: 1343: 1337: 1331: 1325: 1319: 1313: 1307: 1301: 1295: 1289: 1283: 1277: 1274:Broadcom Wi-Fi 1271: 1265: 1259: 1253: 1247: 1241: 1235: 1229: 1223: 1217: 1211: 1205: 1199: 1193: 1187: 1180: 1178: 1166: 1165: 1163: 1162: 1157: 1152: 1147: 1142: 1137: 1135:Junaid Hussain 1132: 1127: 1125:Jeremy Hammond 1122: 1120:Elliott Gunton 1117: 1112: 1107: 1102: 1097: 1091: 1089: 1083: 1082: 1080: 1079: 1074: 1069: 1064: 1059: 1054: 1052:Stealth Falcon 1049: 1044: 1039: 1034: 1029: 1027:PLA Unit 61486 1024: 1022:PLA Unit 61398 1019: 1017:Numbered Panda 1014: 1009: 995: 990: 985: 980: 975: 969: 964: 962:Equation Group 959: 954: 949: 944: 939: 934: 929: 923: 921: 913: 912: 910: 909: 904: 899: 894: 889: 884: 879: 874: 869: 864: 859: 854: 849: 844: 839: 834: 833: 832: 821: 819: 813: 812: 809: 808: 806: 805: 800: 795: 790: 785: 779: 777: 773: 772: 770: 769: 764: 759: 753: 751: 747: 746: 744: 743: 738: 733: 728: 727: 726: 716: 711: 706: 701: 695: 693: 689: 688: 686: 685: 680: 675: 670: 665: 660: 655: 650: 645: 640: 635: 629: 627: 623: 622: 620: 619: 614: 609: 604: 599: 594: 588: 586: 582: 581: 579: 578: 573: 568: 563: 558: 553: 548: 542: 540: 536: 535: 533: 532: 527: 522: 517: 512: 506: 504: 500: 499: 497: 496: 491: 486: 480: 478: 474: 473: 471: 470: 465: 460: 455: 453:HBGary Federal 450: 445: 440: 434: 432: 428: 427: 425: 424: 419: 414: 409: 404: 397: 395: 388: 384: 383: 379: 378: 372: 367: 358: 355: 354: 351: 349: 348: 341: 334: 326: 318: 317: 310: 303: 295: 292: 291: 274: 261: 260: 253: 246: 238: 235: 234: 221: 208: 207: 188: 169: 150: 135: 113: 91: 72: 71: 69: 66: 65: 64: 57: 54: 46:URL shorteners 38:spear-phishing 20:Stealth Falcon 15: 13: 10: 9: 6: 4: 3: 2: 1835: 1824: 1821: 1819: 1816: 1814: 1811: 1810: 1808: 1789: 1786: 1784: 1781: 1779: 1776: 1774: 1771: 1769: 1766: 1764: 1761: 1759: 1756: 1755: 1753: 1749: 1743: 1740: 1739: 1737: 1733: 1727: 1724: 1722: 1719: 1717: 1714: 1712: 1709: 1707: 1704: 1702: 1699: 1697: 1694: 1693: 1691: 1687: 1681: 1678: 1676: 1673: 1671: 1668: 1666: 1663: 1661: 1658: 1656: 1653: 1651: 1648: 1646: 1643: 1641: 1638: 1637: 1635: 1631: 1625: 1622: 1620: 1617: 1615: 1612: 1610: 1607: 1606: 1604: 1600: 1594: 1591: 1589: 1588:Gameover ZeuS 1586: 1584: 1581: 1579: 1576: 1574: 1571: 1569: 1566: 1564: 1561: 1559: 1556: 1554: 1551: 1550: 1548: 1544: 1538: 1535: 1533: 1530: 1529: 1527: 1523: 1517: 1514: 1512: 1509: 1507: 1504: 1502: 1499: 1497: 1494: 1492: 1489: 1487: 1484: 1483: 1481: 1477: 1471: 1468: 1466: 1463: 1461: 1458: 1456: 1453: 1451: 1448: 1446: 1443: 1442: 1440: 1436: 1430: 1427: 1425: 1422: 1420: 1417: 1415: 1412: 1411: 1409: 1405: 1402: 1400: 1396: 1389: 1386: 1383: 1380: 1377: 1374: 1371: 1368: 1365: 1362: 1359: 1356: 1353: 1350: 1347: 1344: 1341: 1338: 1335: 1332: 1329: 1326: 1323: 1320: 1317: 1314: 1311: 1308: 1305: 1302: 1299: 1296: 1293: 1290: 1287: 1284: 1281: 1278: 1275: 1272: 1269: 1266: 1263: 1260: 1257: 1254: 1251: 1248: 1245: 1242: 1239: 1236: 1233: 1230: 1227: 1224: 1221: 1218: 1215: 1212: 1209: 1206: 1203: 1200: 1197: 1194: 1191: 1188: 1185: 1182: 1181: 1179: 1177: 1172: 1167: 1161: 1158: 1156: 1153: 1151: 1148: 1146: 1143: 1141: 1138: 1136: 1133: 1131: 1128: 1126: 1123: 1121: 1118: 1116: 1113: 1111: 1108: 1106: 1103: 1101: 1098: 1096: 1093: 1092: 1090: 1088: 1084: 1078: 1075: 1073: 1070: 1068: 1065: 1063: 1060: 1058: 1055: 1053: 1050: 1048: 1047:Rocket Kitten 1045: 1043: 1040: 1038: 1035: 1033: 1030: 1028: 1025: 1023: 1020: 1018: 1015: 1013: 1010: 1007: 1003: 999: 998:Lazarus Group 996: 994: 991: 989: 986: 984: 981: 979: 976: 973: 970: 968: 965: 963: 960: 958: 955: 953: 950: 948: 945: 943: 940: 938: 935: 933: 930: 928: 925: 924: 922: 920: 914: 908: 905: 903: 900: 898: 895: 893: 890: 888: 885: 883: 880: 878: 875: 873: 870: 868: 865: 863: 860: 858: 855: 853: 850: 848: 845: 843: 840: 838: 835: 831: 828: 827: 826: 823: 822: 820: 818: 814: 804: 801: 799: 796: 794: 791: 789: 786: 784: 781: 780: 778: 774: 768: 765: 763: 760: 758: 755: 754: 752: 748: 742: 741:Disqus breach 739: 737: 734: 732: 729: 725: 722: 721: 720: 717: 715: 712: 710: 707: 705: 702: 700: 697: 696: 694: 690: 684: 681: 679: 676: 674: 671: 669: 666: 664: 661: 659: 656: 654: 651: 649: 646: 644: 641: 639: 636: 634: 631: 630: 628: 624: 618: 615: 613: 610: 608: 605: 603: 600: 598: 595: 593: 590: 589: 587: 583: 577: 574: 572: 569: 567: 564: 562: 559: 557: 554: 552: 549: 547: 544: 543: 541: 537: 531: 528: 526: 523: 521: 518: 516: 515:Snapchat hack 513: 511: 508: 507: 505: 501: 495: 492: 490: 487: 485: 484:LinkedIn hack 482: 481: 479: 475: 469: 466: 464: 461: 459: 456: 454: 451: 449: 446: 444: 441: 439: 436: 435: 433: 429: 423: 420: 418: 415: 413: 410: 408: 405: 402: 399: 398: 396: 392: 389: 385: 377: → 376: 373: 371: 368: 366: 363:←  362: 361: 356: 347: 342: 340: 335: 333: 328: 327: 324: 316: 311: 309: 304: 302: 297: 296: 290: 288: 284: 281:article is a 280: 275: 272: 268: 259: 254: 252: 247: 245: 240: 239: 233: 231: 227: 222: 219: 215: 203: 199: 192: 189: 184: 180: 173: 170: 165: 161: 154: 151: 146: 139: 136: 131: 127: 120: 118: 114: 109: 105: 98: 96: 92: 87: 83: 77: 74: 67: 63: 60: 59: 55: 53: 51: 47: 43: 39: 34: 32: 27: 25: 21: 1532:CryptoLocker 1286:DoublePulsar 1105:Cyber Anakin 1095:Ryan Ackroyd 1051: 988:Helix Kitten 983:Hacking Team 978:Guccifer 2.0 852:Lizard Squad 668:Surkov leaks 597:Hacking Team 287:expanding it 276: 230:expanding it 223: 201: 191: 182: 172: 163: 153: 138: 129: 107: 85: 76: 35: 28: 19: 18: 1768:NetTraveler 1706:LogicLocker 1614:Hidden Tear 1511:Red October 1370:Dragonblood 1280:EternalBlue 1244:Stagefright 1110:George Hotz 1087:Individuals 837:CyberBerkut 31:Citizen Lab 1823:Cybercrime 1807:Categories 1711:Rensenware 1696:BrickerBot 1624:TeslaCrypt 1414:Bad Rabbit 1364:Foreshadow 1268:Cloudbleed 1220:Row hammer 1202:Shellshock 1196:Heartbleed 1184:Evercookie 1160:The Jester 1042:Red Apollo 1002:BlueNorOff 972:GOSSIPGIRL 967:Fancy Bear 957:Elfin Team 952:DarkMatter 947:Dark Basin 932:Bureau 121 892:Teamp0ison 817:Hacktivism 448:DNSChanger 183:CSO Online 68:References 42:PowerShell 1742:VPNFilter 1619:Rombertik 1583:FinFisher 1573:DarkHotel 1537:DarkSeoul 1445:Coreflood 1310:BlueBorne 1262:Dirty COW 1176:disclosed 1174:publicly 1012:NSO Group 942:Cozy Bear 882:PayPal 14 825:Anonymous 699:SHAttered 443:DigiNotar 1783:Titanium 1726:XafeCopy 1721:WannaCry 1650:KeRanger 1578:Duqu 2.0 1563:Carbanak 1382:BlueKeep 1358:SigSpoof 1316:Meltdown 1232:WinShock 1214:Rootpipe 1115:Guccifer 1037:Pranknet 1032:PLATINUM 1006:AndAriel 917:Advanced 872:NullCrew 857:LulzRaft 757:Trustico 370:Timeline 56:See also 44:macros, 1680:X-Agent 1670:Pegasus 1553:Brambul 1516:Shamoon 1460:Kelihos 1450:Alureon 1429:Stuxnet 1399:Malware 1352:TLBleed 1334:Exactis 1322:Spectre 1256:Badlock 1190:iSeeYou 1155:Topiary 887:RedHack 877:OurMine 862:LulzSec 1763:Joanap 1716:Triton 1655:Necurs 1645:Jigsaw 1640:Hitler 1609:Dridex 1568:Careto 1491:Dexter 1424:SpyEye 1390:(2019) 1384:(2019) 1378:(2019) 1372:(2019) 1366:(2018) 1360:(2018) 1354:(2018) 1348:(2018) 1342:(2018) 1336:(2018) 1330:(2018) 1324:(2018) 1318:(2018) 1312:(2017) 1306:(2017) 1300:(2017) 1294:(2017) 1288:(2017) 1282:(2017) 1276:(2017) 1270:(2017) 1264:(2016) 1258:(2016) 1252:(2016) 1246:(2015) 1240:(2015) 1238:JASBUG 1234:(2014) 1228:(2014) 1222:(2014) 1216:(2014) 1210:(2014) 1208:POODLE 1204:(2014) 1198:(2014) 1192:(2013) 1186:(2010) 1169:Major 1150:Track2 1072:xDedic 902:UGNazi 48:, and 1778:Tinba 1665:Mirai 1593:Regin 1506:Mahdi 1501:Flame 1486:Carna 1470:Stars 1388:Kr00k 1328:EFAIL 1298:KRACK 1250:DROWN 375:2020s 365:2000s 277:This 1773:R2D2 1758:Grum 1751:2019 1735:2018 1701:Kirk 1689:2017 1660:MEMZ 1633:2016 1602:2015 1546:2014 1525:2013 1479:2012 1455:Duqu 1438:2011 1407:2010 1145:Sabu 897:TDO 842:GNAA 776:2019 750:2018 692:2017 626:2016 585:2015 539:2014 503:2013 477:2012 431:2011 394:2010 283:stub 226:stub 1496:FBI 1140:MLT 1004:) ( 1809:: 200:. 181:. 162:. 128:. 116:^ 106:. 94:^ 84:. 52:. 33:. 1008:) 1000:( 345:e 338:t 331:v 314:e 307:t 300:v 289:. 257:e 250:t 243:v 232:. 204:. 185:. 166:. 132:. 110:. 88:.

Index

United Arab Emirates
Citizen Lab
spear-phishing
PowerShell
URL shorteners
social engineering
DarkMatter (Emirati company)
"Group: Stealth Falcon - MITRE ATT&CK™"


"Keep Calm and (Don't) Enable Macros: A New Threat Actor Targets UAE Dissidents"


"Stealth Falcon spyware used on UAE critics"
"Stealth Falcon spyware targeting UAE critics, say researchers"
"Keep Calm and (Don't) Enable Macros: Appendices"
"Stealth Falcon group uses custom spyware, fake journalists to target UAE dissidents"
""Stealth Falcon" Threat Group Targets UAE Dissidents - SecurityWeek.Com"
Stub icon
stub
expanding it
v
t
e
Stub icon
computer security
stub
expanding it
v
t

Text is available under the Creative Commons Attribution-ShareAlike License. Additional terms may apply.