Affiliations
- Believed to be responsible for the targeting of employees of companies that operate U.S. power plants. Also believed to be linked to Crouching Yeti
This threat actor targets business and industrial control networks in the power-utility sector, for the purpose of espionage. In 2017, the U.S. Department of Homeland Security warned U.S. critical infrastructure operators about this threat actor and its capabilities.
Suspected victims
- United States
- United Kingdom
Suspected state sponsor
- Russian Federation
Type of incident
- Espionage
Target category
- Private sector