Industry based Threat Groups Listing(Overview)

Zakkir
Dec 21, 2022

Hello guys, Hope everyone is well. I would like to share one of my project in recent times.

Project Description: “Researched and identified the threat actors targeting UAE government entities”.

Conducted the research over internet (public cyber news sites, Threat Intelligence Reports & MITRE Att&ck) to identify the threat actor groups who are all targeting UAE government entities.

sample threat groups targeting UAE gov entities

After identifying the threat groups, mapped the threat actors used techniques & sub-techniques layer by layer and assigned the score (1 to 10) using MITRE navigator tool. By summing up all the layers, able to produce the heat map like below.

“TG-TTP’s” heatmap

Post completion of research & identification phase, I started to build the detection analytics from most used technique by multiple threat actor groups.

Note: I will write a separate blog on each phase, from research to detection analytics.

--

--

Zakkir

Security Analyst & Engineer, Threat Researcher, Threat Hunter, Advisory Threat Emulator