Loading the current evidence view. Navigation and account controls remain available.
Threat actors
Loading the current evidence view. Navigation and account controls remain available.
9
techniques
2
software
10,285
corpus matches
profile
Aoqin Dragon is a suspected Chinese cyber espionage threat group that has been active since at least 2013. Aoqin Dragon has primarily targeted government, education, and telecommunication organizations in Australia, Cambodia, Hong Kong, Singapore, and Vietnam. Security researchers noted a potential association between Aoqin Dragon and UNC94, based on malware, infrastructure, and targets.
techniques
9 attributed · most-instrumented first
software
2 malware & tools attributed
Mongall
S1026
Heyoka Backdoor
S1027
read this carefully
10,285 corpus matches is not attribution
That count is indicators which exhibit techniques Aoqin Dragon is known to use. Many unrelated operators use the same techniques. Treat it as a shared-technique signal for hunting, never as first-party attribution to this group.
indicators exhibiting these techniques
Top by severity: each resolves to its own verdict.
showing 30 of 10,285