APTTrail: APT STEALTHFALCON indicators and references

Fecha
18 Jun 2026
Actor
apt-stealthfalcon
Tipo
Ioc
Pais
Unknown
Sector
Media
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
apt-stealthfalconActor
UnknownPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a APT STEALTHFALCON. Aliases observados: APT STEALTHFALCON. Conteo por tipo: domain: 94.

Key Points

  • https://citizenlab.ca/2016/05/stealth-falcon/
  • https://citizenlab.org/2016/05/stealth-falcon-appendices/
  • https://research.checkpoint.com/2025/stealth-falcon-zero-day/
  • https://www.welivesecurity.com/2019/09/09/backdoor-stealth-falcon-group/

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a APT STEALTHFALCON. Aliases observados: APT STEALTHFALCON. Conteo por tipo: domain: 94.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domainadhostingcache.comAPTTrail
Domainadlinkmetric.comAPTTrail
Domainadlinkmetrics.comAPTTrail
Domainadobereaderupdater.comAPTTrail
Domainairlineadverts.comAPTTrail
Domainakamai-host-network.comAPTTrail
Domainakamai-hosting-network.comAPTTrail
Domainakamaicachecdn.comAPTTrail
Domainakamaicloud.netAPTTrail
Domainakamaicss.comAPTTrail
Domainakamaihostcdn.netAPTTrail
Domainakamaiwebcache.comAPTTrail
Domainappleimagecache.comAPTTrail
Domainbestairlinepricetags.comAPTTrail
Domainburst-media.comAPTTrail
Domaincachecontent.comAPTTrail
Domaincdn-logichosting.comAPTTrail
Domaincdnimagescache.comAPTTrail
Domainchromeupdater.comAPTTrail
Domainclickstatistic.comAPTTrail
Domaincloudburstcdn.netAPTTrail
Domaincloudburstercdn.netAPTTrail
Domaincloudimagecdn.comAPTTrail
Domaincloudimagehosters.comAPTTrail
Domaincontenthosts.comAPTTrail
Domaincontenthosts.netAPTTrail
Domaincyclingonlineshop.comAPTTrail
Domaindnsclienthelper.comAPTTrail
Domaindnsclientresolver.comAPTTrail
Domaindomainimagehost.comAPTTrail

Referencias

Diamond Model

Adversary
apt-stealthfalcon
Ver perfil →
Victim
APTTrail: APT STEALTHFALCON indicators and references
Capability
Ioc
Infrastructure
adhostingcache.com
adlinkmetric.com
adlinkmetrics.com
adobereaderupdater.com

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain adhostingcache.com APTTrail VT OffSec SOCRadar
Domain adlinkmetric.com APTTrail VT OffSec SOCRadar
Domain adlinkmetrics.com APTTrail VT OffSec SOCRadar
Domain adobereaderupdater.com APTTrail VT OffSec SOCRadar
Domain airlineadverts.com APTTrail VT OffSec SOCRadar
Domain akamai-host-network.com APTTrail VT OffSec SOCRadar
Domain akamai-hosting-network.com APTTrail VT OffSec SOCRadar
Domain akamaicachecdn.com APTTrail VT OffSec SOCRadar
Domain akamaicloud.net APTTrail VT OffSec SOCRadar
Domain akamaicss.com APTTrail VT OffSec SOCRadar
Domain akamaihostcdn.net APTTrail VT OffSec SOCRadar
Domain akamaiwebcache.com APTTrail VT OffSec SOCRadar
Domain appleimagecache.com APTTrail VT OffSec SOCRadar
Domain bestairlinepricetags.com APTTrail VT OffSec SOCRadar
Domain burst-media.com APTTrail VT OffSec SOCRadar
Domain cachecontent.com APTTrail VT OffSec SOCRadar
Domain cdn-logichosting.com APTTrail VT OffSec SOCRadar
Domain cdnimagescache.com APTTrail VT OffSec SOCRadar
Domain chromeupdater.com APTTrail VT OffSec SOCRadar
Domain clickstatistic.com APTTrail VT OffSec SOCRadar
Domain cloudburstcdn.net APTTrail VT OffSec SOCRadar
Domain cloudburstercdn.net APTTrail VT OffSec SOCRadar
Domain cloudimagecdn.com APTTrail VT OffSec SOCRadar
Domain cloudimagehosters.com APTTrail VT OffSec SOCRadar
Domain contenthosts.com APTTrail VT OffSec SOCRadar
Domain contenthosts.net APTTrail VT OffSec SOCRadar
Domain cyclingonlineshop.com APTTrail VT OffSec SOCRadar
Domain dnsclienthelper.com APTTrail VT OffSec SOCRadar
Domain dnsclientresolver.com APTTrail VT OffSec SOCRadar
Domain domainimagehost.com APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt-stealthfalcon en el blog → Ver apt-stealthfalcon en IntelTracker → URL IntelTracker: citizenlab.ca→ URL IntelTracker: citizenlab.org→ URL IntelTracker: research.checkpoint.com→ URL IntelTracker: www.welivesecurity.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: citizenlab.ca→ Fuente OSINT: citizenlab.org→ Fuente OSINT: research.checkpoint.com→ Fuente OSINT: www.welivesecurity.com → Buscar apt-stealthfalcon en APTTrail → Repositorio APTTrail → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes