🎯 Threat Actors
Threat Actor Activity Feed
Live activity tracking for APT groups targeting India — pulled from threat intelligence sources. Updated daily.
All Threat Actors
Monitor all India-targeting APT groups
Aggregated feed across all groups in the reference
Sidewinder
APT-C-17, Rattlesnake, T-APT-04
Pakistan, China, Nepal, Sri Lanka — military, government
Lazarus Group
HIDDEN COBRA, Guardians of Peace, APT38
Global finance, crypto, Indian banks & fintech, defence
Transparent Tribe
APT36, ProjectM, Mythic Leopard
Indian military, government, defence contractors, education
APT41
Winnti, Barium, Double Dragon
Global — healthcare, telecom, tech; India targets include pharma
Muddy Water
MERCURY, Static Kitten, Seedworm
Middle East, South Asia — government, telecom, defence
SideWinder
APT-Q-39, Baby Elephant
Indian Ocean region, South Asian military & government
9 items
Chinese hackers use SparroWocky malware in govt espionage attacks
Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers
4.1 Million Impacted by AdaptHealth Data Breach
AdaptHealth confirms 4.1 million people exposed in July cyberattack
Chinese espionage groups swarm to exploit triple-link chain of zero-days
North Korean Hackers Deploy New Linux Espionage Toolkit
North Korea’s Lazarus Operates Through Six Distinct Cyber Clusters
Officials disrupt Chinese espionage operation that hit multiple federal agencies
FBI disrupts proxy network enabling Chinese espionage operations