ETDA ThaiCERT
Report
Search
Home > List all groups > Urpage

Threat Group Cards: A Threat Actor Encyclopedia

Permanent link APT group: Urpage

NamesUrpage (Trend Micro)
Country[Middle East]
SponsorState-sponsored
MotivationInformation theft and espionage
First seen2018
Description(Trend Micro) In the process of monitoring changes in the threat landscape, we get a clearer insight into the way threat actors work behind the schemes. In this case we dig deeper into the possible connection between cyberattacks by focusing on the similarities an unnamed threat actor shares with Patchwork, Dropping Elephant, and another threat actor called Bahamut. For the sake of this report, we will call this unnamed threat actor “Urpage.”
ObservedCountries: Pakistan.
Tools usedTrojaned Android applications.
Information<https://blog.trendmicro.com/trendlabs-security-intelligence/the-urpage-connection-to-bahamut-confucius-and-patchwork/>

Last change to this card: 15 April 2020

Download this actor card in PDF or JSON format

Previous: Turla, Waterbug, Venomous Bear
Next: Vendetta, TA2719

Thailand Computer Emergency Response Team (ThaiCERT)
Electronic Transactions Development Agency

Follow us on

Facebook Twitter

Report incidents

Telephone +66 (0)2-123-1234
E-mail report@thaicert.or.th
PGP Download PGP key