NEW: Group Profiler — instant APT intel lookup. Try it →
Emblem illustrating the Moafee threat group

Moafee

G0002 China Espionage MITRE ATT&CK →

Overview

Moafee is a threat group that appears to operate from the Guandong Province of China. Due to overlapping TTPs, including similar custom tools, Moafee is thought to have a direct or indirect relationship with the threat group DragonOK.

Naming & attribution

It uses 1 documented ATT&CK technique — more than 2% of the 174 groups tracked here.

Who calls this group what — MITRE lists each alias with the report that used it, but not which vendor coined it.
NameFirst reported by
MoafeeHaq, T., Moran, N., Scott, M., & Vashisht, S. O

Targets

Private sector

Regions

United States

TTPs — 1 technique across 1 tactic

Stealth

Tools & malware (1)

PoisonIvy

Reporting (1)