FORENSIA

THREAT_ACTOR · G1019

MoustachedBouncer

Also known as: MoustachedBouncer

Profile

MoustachedBouncer is a cyberespionage group that has been active since at least 2014 targeting foreign embassies in Belarus.

MITRE ATT&CK ↗

Techniques

8 ATT&CK techniques attributed to this actor.

Software

3 malware/tools attributed to this actor.

DiscoSharpDiscoNightClub

Related corpus activity

8,430 indicators EXHIBIT techniques this actor uses. This is a shared-technique signal, not a first-party attribution to MoustachedBouncer.

IndicatorTypeFamilySevSrc
cve-2020-22658cve852
cve-2025-7443cve851
cve-2025-11837cve852
cve-2020-22653cve852
cve-2025-12057cve851
cve-2017-17215cve852
cve-2026-22584cve852
cve-2013-3307cve852
cve-2018-8007cve851
cve-2023-44976cveransomware852
cve-2021-29441cve851
cve-2026-3844cve851
cve-2025-7852cve851
cve-2016-0638cvephishing851
cve-2025-66478cve852
cve-2025-0921cve852
cve-2025-23304cve852
cve-2021-27076cve851
cve-2025-68670cve852
cve-2024-1781cve851
cve-2026-3102cve853
cve-2016-5681cve852
cve-2025-2492cve852
cve-2026-4368cveransomware851
cve-2026-1969cve851
cve-2026-0740cve851
cve-2025-34085cve851
625b6535321d58bb5c613e85332bf731hash803
5ab41cf20315d2ea1385967d588159873a65ef5581a0b78de06c0d8617894194sha256phishing802
2654c08491a0f7c4a3dfc6282de5638bhash803

Showing the top 30 by severity of 8,430.