APT
ATLAS
Atlas
Actors
147
Names
508
Sectors
40
Requirements
480
⌘K
▸
sign in
Atlas
Actors
147
Names
508
Sectors
40
Requirements
480
LOADING
Actors
/
Cybercrime
/
Europe
FIN5
G0053
CRIME
RU · Russia
AKA
Sundown
CrowdStrike
:
GRACEFUL SPIDER
MITRE
:
G0053
Targets
4
Sectors
0
Threat types
1
GIRs covered
0/480
Active since
2008
Pin to atlas
Watch
Share
Export
Also tracked as
3 vendor names · 1 other aliases
Open Rosetta Stone
CrowdStrike
GRACEFUL SPIDER
Mandiant
FIN5
MITRE
G0053
UNATTRIBUTED ALIASES
Sundown
Victimology
Geographic footprint · 4 countries
Region filter
Export
origin · Russia
targeted countries · 4
OCEANIA ·
1
Australia
AMERICAS ·
3
Bahamas
·
Canada
·
United States
Sectors targeted
0 of 40
No sectors targeted yet for this actor.
Tactics, techniques, procedures
Threat types + MITRE ATT&CK mapping
THREAT TYPES
FIN · Financial Fraud
MITRE ATT&CK · 6 techniques
Execution
· 1
T1059
Command and Scripting Interpreter
Credential Access
· 1
T1110
Brute Force
Discovery
· 1
T1018
Remote System Discovery
Collection
· 1
T1119
Automated Collection
Stealth
· 2
T1070.004
File Deletion
T1078
Valid Accounts
GIR coverage
0 / 480 requirements satisfied
Open matrix
No GIRs mapped yet for this actor.
Open data
Machine-readable exports of this profile
JSON · REST
Actor record
Full profile via the public v1 API
STIX 2.1
Intrusion-set bundle
Deterministic ids · techniques + targeted countries
ATT&CK NAVIGATOR
Technique layer
6 techniques · layer format 4.5
Related actors
By origin and actor type
Scattered Spider
cybercrime
United States · 3 targets · since 2022
APT44
nation-state
Russia · 25 targets · since 2009
FIN10
cybercrime
unattributed · 1 targets · since 2013
FIN2
cybercrime
unattributed · 0 targets · since —
FIN6
cybercrime
Russia · 15 targets · since 2014
UNC1543
cybercrime
unattributed · 22 targets · since —