FlagThis
← Threat Actors
/
Global
/
Storm
DOSSIER // STORM
Storm
ACTIVE CAMPAIGN TRACKED
▲ High Threat
Primary Motivation
Financial gain (Fraud and Theft)
Confidence Rating
90% (Grounded)
Storm-0706 Financial Phishing, Storm-0501 Malware Distribution
📥 Export ATT&CK Layer (.json)
🔔 RSS Feed
🏛️ CISA Advisories ↗
📋 Copy Dossier Briefing
🎯 Target Sectors & Focus
Financial Services
Corporate Finance Departments
Small to Medium Enterprises (SMEs)
Governmental Finance Agencies
🛡️ MITRE ATT&CK® Attack Lifecycle
(7 TTPs)
📥 Download Navigator JSON
All Stages
7
Initial Access
2
Execution
1
Persistence & Privilege Escalation
1
Credential Access & Discovery
1
Command & Control
1
Operational Techniques
1
Initial Access
2
T1566
Adversary-in-the-Middle (AiTM) Phishing
↗
T1566
OAuth Application Consent Phishing
↗
Execution
1
T1059
Living-off-the-Land Binaries (LotL)
↗
Persistence & Privilege Escalation
1
T1547
Session Token Theft
↗
Credential Access & Discovery
1
T1003
MFA Fatigue and Bypass
↗
Command & Control
1
T1071
Use of Legitimate Cloud Infrastructure for C2
↗
Operational Techniques
1
T1000
Email Rule Manipulation for BEC
↗
📰 Verified Campaigns & Intelligence Archive
🔔 Subscribe to Alerts
[DEEP DIVE]
Midnight Blizzard and the 'CaptiveCrunch' Campaign Targeting Microsoft 365 via Hotel WiFi
Attacks and Vulnerabilities
2026-08-03
[DEEP DIVE]
Iranian APT Escalation: Massive Surge in Cyber Operations Against Israeli Infrastructure
Attacks and Vulnerabilities
2026-07-06
[DEEP DIVE]
Parallel Intrusion: Storm-2603 and Unattributed Actors Target Microsoft SharePoint
Strategies and Tactics
2026-06-26
[DEEP DIVE]
The Gentlemen Ransomware: Storm-2697 Targets Critical Infrastructure with Go-Based Self-Propagating Malware
Attacks and Vulnerabilities
2026-06-06
Adversary Rosetta Stone // Storm
×
Copied to clipboard
SHARE INTELLIGENCE WIRE
×
Story Title
X / Twitter
Bluesky
LinkedIn
Copy Link
LINK COPIED TO CLIPBOARD