🎯 Threat Actors
Threat Actor Activity Feed
Live activity tracking for APT groups targeting India — pulled from threat intelligence sources. Updated daily.
All Threat Actors
Monitor all India-targeting APT groups
Aggregated feed across all groups in the reference
Sidewinder
APT-C-17, Rattlesnake, T-APT-04
Pakistan, China, Nepal, Sri Lanka — military, government
Lazarus Group
HIDDEN COBRA, Guardians of Peace, APT38
Global finance, crypto, Indian banks & fintech, defence
Transparent Tribe
APT36, ProjectM, Mythic Leopard
Indian military, government, defence contractors, education
APT41
Winnti, Barium, Double Dragon
Global — healthcare, telecom, tech; India targets include pharma
Muddy Water
MERCURY, Static Kitten, Seedworm
Middle East, South Asia — government, telecom, defence
SideWinder
APT-Q-39, Baby Elephant
Indian Ocean region, South Asian military & government
6 items for APT41
Russian State APT Linked to Recent Public Wi-Fi Gateway Hacking
Stateless MCP has recaptured my interest (and inspired mcp-explorer and datasette-mcp)
ESET tracks rise in malicious AI skills and adaptable malware
AI Agent Drives Espionage Attack on Thai Ministry of Finance
Russian Global Webmail Espionage
[remote] iOS Bluetooth PAN Exploit - Ethernet Gateway without Adapter