Threat actor · G1048
UNC3886
UNC3886 is a China-nexus cyberespionage group that has been active since at least 2022, targeting defense, technology, and telecommunication organizations located in the United States and the Asia-Pacific-Japan (APJ) regions. UNC3886 has displayed a deep understanding of edge devices and virtualization technologies through the exploitation of zero-day vulnerabilities and the use of novel malware families and utilities.
ATT&CK techniques
49 mappedT1003.001T1008T1014T1021.004T1027.005T1036.004T1037T1037.004T1040T1057T1059.001T1059.003T1059.004T1059.006T1059.012T1068T1070.004T1070.006T1070.007T1074.001T1078T1078.001T1083T1095T1124T1190T1203T1205T1205.001T1212T1218.011T1505.006T1548T1554T1555.005T1560.001T1560.003T1564.011T1570T1587.001T1587.004T1588.001T1588.004T1673T1675T1681T1685T1686T1690