APTTrail: APT SEAFLOWER indicators and references

Fecha
18 Jun 2026
Actor
apt-seaflower
Tipo
Ioc
Pais
Unknown
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

21IOCs
0TTPs
apt-seaflowerActor
UnknownPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a APT SEAFLOWER. Aliases observados: APT SEAFLOWER. Conteo por tipo: domain: 20.

Key Points

  • https://blog.confiant.com/how-seaflower-%E8%97%8F%E6%B5%B7%E8%8A%B1-installs-backdoors-in-ios-android-web3-wallets-to-steal-your-seed-phrase-d25f0ccdffce

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a APT SEAFLOWER. Aliases observados: APT SEAFLOWER. Conteo por tipo: domain: 20.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domain74871011.huliqianbao.comAPTTrail
Domainapp.imztoken.xyzAPTTrail
Domainbnb.lnfura.orgAPTTrail
Domainbsc.lnfura.orgAPTTrail
Domainbtc.lnfura.orgAPTTrail
Domaincolnbase.homesAPTTrail
Domaincopy.lnfura.orgAPTTrail
Domaineth.lnfura.orgAPTTrail
Domainfacai.imAPTTrail
Domainimztoken.xyzAPTTrail
Domainlnfura.ioAPTTrail
Domainlnfura.orgAPTTrail
Domainmainnet.lnfura.ioAPTTrail
Domainmainnet.lnfura.orgAPTTrail
Domainmanage.lnfura.ioAPTTrail
Domainmetanask.ccAPTTrail
Domainsom-coinbase.comAPTTrail
Domaintest.lnfura.orgAPTTrail
Domaintoken18.appAPTTrail
Domaintrx.lnfura.orgAPTTrail

Referencias

Diamond Model

Adversary
apt-seaflower
Ver perfil →
Victim
APTTrail: APT SEAFLOWER indicators and references
Capability
Ioc
Infrastructure
74871011.huliqianbao.com
app.imztoken.xyz
bnb.lnfura.org
bsc.lnfura.org

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain 74871011.huliqianbao.com APTTrail VT OffSec SOCRadar
Domain app.imztoken.xyz APTTrail VT OffSec SOCRadar
Domain bnb.lnfura.org APTTrail VT OffSec SOCRadar
Domain bsc.lnfura.org APTTrail VT OffSec SOCRadar
Domain btc.lnfura.org APTTrail VT OffSec SOCRadar
Domain colnbase.homes APTTrail VT OffSec SOCRadar
Domain copy.lnfura.org APTTrail VT OffSec SOCRadar
Domain eth.lnfura.org APTTrail VT OffSec SOCRadar
Domain facai.im APTTrail VT OffSec SOCRadar
Domain imztoken.xyz APTTrail VT OffSec SOCRadar
Domain lnfura.io APTTrail VT OffSec SOCRadar
Domain lnfura.org APTTrail VT OffSec SOCRadar
Domain mainnet.lnfura.io APTTrail VT OffSec SOCRadar
Domain mainnet.lnfura.org APTTrail VT OffSec SOCRadar
Domain manage.lnfura.io APTTrail VT OffSec SOCRadar
Domain metanask.cc APTTrail VT OffSec SOCRadar
Domain som-coinbase.com APTTrail VT OffSec SOCRadar
Domain test.lnfura.org APTTrail VT OffSec SOCRadar
Domain token18.app APTTrail VT OffSec SOCRadar
Domain trx.lnfura.org APTTrail VT OffSec SOCRadar
Domain blog.confiant.com Extraido del contenido VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt-seaflower en el blog → Ver apt-seaflower en IntelTracker → URL IntelTracker: blog.confiant.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: blog.confiant.com → Buscar apt-seaflower en APTTrail → Repositorio APTTrail → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes