FlagThis
← Threat Actors
/
Lebanon
/
Dark Caracal
DOSSIER // DARK-CARACAL
Dark Caracal
ACTIVE CAMPAIGN TRACKED
▲ High Threat
Lebanon
Primary Aliases:
G0070
📋 Copy All
Sponsor / State Affiliation
Lebanese General Directorate of General Security (GDGS)
Primary Motivation
Political, military, and strategic espionage
Confidence Rating
85% (Grounded)
Mobile-Centric Espionage Trend
📥 Export ATT&CK Layer (.json)
🔔 RSS Feed
🏛️ CISA Advisories ↗
📋 Copy Dossier Briefing
🎯 Target Sectors & Focus
Government officials
Diplomatic entities
Military organizations
Political activists
Journalists
Regional security agencies
🛡️ MITRE ATT&CK® Attack Lifecycle
(7 TTPs)
📥 Download Navigator JSON
All Stages
7
Initial Access
2
Credential Access & Discovery
1
Command & Control
2
Operational Techniques
2
Initial Access
2
T1566
Credential harvesting via phishing
↗
T1566
SMS-based phishing (Smishing)
↗
Credential Access & Discovery
1
T1003
Social engineering via messaging applications (WhatsApp/Telegram)
↗
Command & Control
2
T1071
Remote access trojans (RATs)
↗
T1071
Data exfiltration via encrypted channels
↗
Operational Techniques
2
T1000
Malicious APK distribution and sideloading
↗
T1000
Custom mobile spyware deployment
↗
📰 Verified Campaigns & Intelligence Archive
🔔 Subscribe to Alerts
[DEEP DIVE]
Dark Caracal Deploys GoCaracal Malware with Ethereum-Based C2 Fallback
Attacks and Vulnerabilities
2026-08-31
Adversary Rosetta Stone // Dark Caracal
×
🛡️ Other Industry Tracking Codes
G0070
📋
Copied to clipboard
SHARE INTELLIGENCE WIRE
×
Story Title
X / Twitter
Bluesky
LinkedIn
Copy Link
LINK COPIED TO CLIPBOARD