← Threat Actors / Global / Dancing Salome
DOSSIER // DANCING-SALOME

Dancing Salome

▲ High Threat
Primary Aliases: Bleeding Bear Cadet Blizzard DEV-0586 DEV-0587
Confidence Rating 70% (Grounded)

Dancing Salome is the Kaspersky codename for an APT actor with a primary focus on ministries of foreign affairs, think tanks, and Ukraine. What makes Dancing Salome interesting and relevant is the attacker’s penchant for leveraging HackingTeam RCS implants compiled after the public breach.

🎯 Target Sectors & Focus

Think Tanks Government, Administration

🛡️ MITRE ATT&CK® Attack Lifecycle (47 TTPs)

📥 Download Navigator JSON
Persistence & Privilege Escalation 2
Defense Evasion 1

📰 Verified Campaigns & Intelligence Archive

🔔 Subscribe to Alerts
Copied to clipboard

LINK COPIED TO CLIPBOARD