NEW: Group Profiler — instant APT intel lookup. Try it →

← threatfilter.dev / all groups / Molerats

Molerats

G0021 Espionage MITRE ATT&CK →

Also known as: Operation Molerats · Gaza Cybergang

Overview

Molerats is an Arabic-speaking, politically-motivated threat group that has been operating since 2012. The group's victims have primarily been in the Middle East, Europe, and the United States.

Targets

Civil society · Defense · Education · Energy · Finance · Government · Healthcare · Legal · Media · Military · NGOs · Pharmaceuticals

Regions

Europe · Israel · Middle East · Palestine · United States

Capabilities

  • Custom malware/implant development — ATT&CK: 6 attributed custom malware families

TTPs — 16 techniques across 8 tactics

Initial Access

Execution

Persistence

Stealth

Defense Impairment

Credential Access

Discovery

Command and Control

Tools & malware (6)

MoleNet · Spark · DustySky · DropBook · SharpStage · PoisonIvy

Reporting (3)