Hafnium (cyberespionage group)

GPTKB entity

Statements (22)
Predicate Object
gptkbp:instanceOf cyberespionage group
gptkbp:activeYearsStart at least 2021
gptkbp:alsoKnownAs APT31 (sometimes conflated)
gptkbp:attributedTo gptkb:Microsoft
gptkbp:category Advanced Persistent Threat
gptkbp:countryOfOrigin gptkb:China
https://www.w3.org/2000/01/rdf-schema#label Hafnium (cyberespionage group)
gptkbp:mainLanguage gptkb:Chinese
gptkbp:notableBattle 2021 Microsoft Exchange Server data breach
gptkbp:operatesIn cyberspace
gptkbp:suspectedAffiliation gptkb:Chinese_government
gptkbp:target gptkb:Microsoft_Exchange_Server
universities
think tanks
US organizations
defense contractors
infectious disease researchers
gptkbp:technique zero-day exploits
remote code execution
web shells
gptkbp:bfsParent gptkb:David_Hafnium
gptkbp:bfsLayer 6