Loading the current evidence view. Navigation and account controls remain available.
Threat actors
Loading the current evidence view. Navigation and account controls remain available.
7
techniques
3
software
9,906
corpus matches
profile
IndigoZebra is a suspected Chinese cyber espionage group that has been targeting Central Asian governments since at least 2014.
techniques
7 attributed · most-instrumented first
software
3 malware & tools attributed
PoisonIvy
S0012
BoxCaon
S0651
xCaon
S0653
read this carefully
9,906 corpus matches is not attribution
That count is indicators which exhibit techniques IndigoZebra is known to use. Many unrelated operators use the same techniques. Treat it as a shared-technique signal for hunting, never as first-party attribution to this group.
indicators exhibiting these techniques
Top by severity: each resolves to its own verdict.
resource-development
showing 30 of 9,906