← threatfilter.dev / all groups / Machete
Machete
Also known as: APT-C-43 · El Machete
Overview
Machete is a suspected Spanish-speaking cyber espionage group that has been active since at least 2010. It has primarily focused its operations within Latin America, with a particular emphasis on Venezuela, but also in the US, Europe, Russia, and parts of Asia. Machete generally targets high-profile organizations such as government institutions, intelligence services, and military units, as well as telecommunications and power companies.
Targets
Government · Military
Regions
Belgium · Brazil · China · Colombia · Cuba · Ecuador · France · Germany · Malaysia · Peru · Russia · Spain · Sweden · United States · Venezuela
TTPs — 11 techniques across 3 tactics
Initial Access
-
T1189Drive-by Compromise -
T1566.001Spearphishing Attachment -
T1566.002Spearphishing Link
Execution
-
T1053.005Scheduled Task -
T1059.003Windows Command Shell -
T1059.005Visual Basic -
T1059.006Python -
T1204.001Malicious Link -
T1204.002Malicious File
Stealth
-
T1036.005Match Legitimate Resource Name or Location -
T1218.007Msiexec
Tools & malware (1)
Machete