About This Site

Threat Actor Index is a free threat intelligence resource built and maintained by Intelligence Group. It provides structured, searchable intelligence on named threat actor groups drawn entirely from the MITRE Enterprise ATT&CK dataset, giving security teams, researchers, and analysts a fast, no-login way to explore adversary behaviour, technique coverage, malware usage, and nation-state attribution.

The index is rebuilt automatically every day from the public MITRE CTI dataset, ensuring the data reflects the latest published threat actor intelligence. All data is sourced from the MITRE CTI repository and the CISA KEV catalogue.

What We Index
176
Threat Actor Groups
498
Techniques Tracked
607
Toolsets
56
Campaigns
10
Attributed Nations
About Intelligence Group

Intelligence Group is a Wellington security practice working with organisations across New Zealand and Australia. Our work spans internal and external network penetration testing, web, mobile and API assessments, wireless reviews, red team operations, phishing simulations and evidence-led Essential Eight assurance.

We built this tool because we use it. Understanding the tactics, techniques and procedures of named threat actor groups is core to delivering effective security assessments and relevant, risk-based advice to our clients.

Data Sources & Licensing

All threat actor intelligence is sourced from the MITRE ATT&CK Enterprise dataset, published under the MITRE ATT&CK Terms of Use. CVE exploitation data is sourced from the CISA Known Exploited Vulnerabilities catalogue.

This site does not modify or editorially alter the source data. Nation-state attribution and sector targeting labels are derived algorithmically from published MITRE descriptions and are intended as a research aid, not a definitive attribution assessment.

Get in Touch

If you are looking for penetration testing, Essential Eight assurance or security advice, we would be happy to discuss your requirements.

Request a quote
↑