FORENSIA

THREAT_ACTOR · G0066

Elderwood

Also known as: Elderwood, Elderwood Gang, Beijing Group, Sneaky Panda

Profile

Elderwood is a suspected Chinese cyber espionage group that was reportedly responsible for the 2009 Google intrusion known as Operation Aurora. The group has targeted defense organizations, supply chain manufacturers, human rights and nongovernmental organizations (NGOs), and IT service providers.

MITRE ATT&CK ↗

Techniques

9 ATT&CK techniques attributed to this actor.

Software

9 malware/tools attributed to this actor.

PoisonIvyHydraqBribaNaidWiarpVasportPasamNerexLinfo

Related corpus activity

9,329 indicators EXHIBIT techniques this actor uses. This is a shared-technique signal, not a first-party attribution to Elderwood.