NEW: Group Profiler — instant APT intel lookup. Try it →

← threatfilter.dev / all groups / Rancor

Rancor

G0075 Espionage MITRE ATT&CK →

Overview

Rancor is a threat group that has led targeted campaigns against the South East Asia region. Rancor uses politically-motivated lures to entice victims to open malicious documents.

Targets

Civil society · Government

Regions

Cambodia · Singapore

TTPs — 9 techniques across 5 tactics

Initial Access

Execution

Stealth

Command and Control

Tools & malware (4)

Reg · DDKONG · PLAINTEE · certutil

Reporting (1)