FlagThis
← All Threat Actors
Threat Actor Profile
Cl0p
TA505
Evil Corp affiliate
LACE TEMPEST
▲ High Threat
MOVEit mass exploitation (2023) hitting 1000+ organizations, GoAnywhere zero-day
Origin
Russia/Ukraine
Sponsor
Financially motivated criminal group
Active Since
2019
Motivation
Financial gain (ransomware)
Target Sectors
Financial
Healthcare
Manufacturing
Technology
Education
Known TTPs
MOVEit exploitation
GoAnywhere exploitation
Accellion FTA exploitation
Double extortion ransomware
Mass exploitation
External Resources
MITRE ATT&CK Groups ↗
CISA Advisories ↗
Mandiant APT Groups ↗
Related Intelligence
Hacking the mainframe…
No related stories found in the intelligence database.
SHARE INTELLIGENCE WIRE
×
Story Title
X / Twitter
Bluesky
LinkedIn
Copy Link
LINK COPIED TO CLIPBOARD