29
Techniques
13
Toolsets
2
CVEs Referenced
1
KEV Entries
CISA Known Exploited
About APT5

APT5 is a China-based espionage actor that has been active since at least 2007 primarily targeting the telecommunications, aerospace, and defense industries throughout the U.S., Europe, and Asia. APT5 has displayed advanced tradecraft and significant interest in compromising networking devices and their underlying software including through the use of zero-day exploits.

View MITRE record ↗

Toolsets (13)
🐛
PACEMAKER S1109
Malware · Network Devices, Linux
🐛
Malware · Network Devices, Linux
🐛
PoisonIvy S0012
Malware · Windows
🐛
Malware · Network Devices, Linux
🐛
Malware · Network Devices, Linux
🐛
SLOWPULSE S1104
Malware · Network Devices
🐛
Malware · Windows
🐛
gh0st RAT S0032
Malware · Windows, macOS
🔧
Mimikatz S0002
Tool · Windows
🔧
Net S0039
Tool · Windows
🔧
PcShare S1050
Tool · Windows
🔧
Tasklist S0057
Tool
🔧
netstat S0104
Tool
CVEs Referenced (2 · 1 CISA KEV)
CVE-2014-7169View full details on NVDKEV
CVE-2016-6662View full details on NVD
↑