ACTINIUM is an advanced persistent threat (APT) that has been active since at least 2013 and targets government, military, defense contractors, telecommunications companies, and other organizations involved in sensitive activities. It uses a variety of tactics to gain access to its target networks, including spear-phishing emails, social engineering attacks, exploiting vulnerabilities in software or systems, and using malware such as remote administration tools (RATs) like Adobe Flashback, BlackEnergy, and Pupy. Once inside a network, ACTINIUM can steal sensitive information, install additional backdoors for future access, and cause disruption to the target organization's operations. It is considered one of the most sophisticated cyber threats facing organizations today.
Techniques, tactics and practices:
ACTINIUM uses a variety of tactics to gain access to its target networks, including spear-phishing emails, social engineering attacks, exploiting vulnerabilities in software or systems, and using malware such as remote administration tools (RATs) like Adobe Flashback, BlackEnergy, and Pupy. Once inside a network, ACTINIUM can steal sensitive information, install additional backdoors for future access, and cause disruption to the target organization's operations.
