mirror of
https://github.com/S3N4T0R-0X0/APTs-Adversary-Simulation.git
synced 2026-08-04 09:41:40 +02:00
Update README.md
This commit is contained in:
@@ -3,13 +3,17 @@
|
||||
|
||||
This is a simulation of an attack by the APT group **Charming Kitten**, targeting multiple sectors including government, military, and critical infrastructure across the Middle East. The group’s targeting has expanded beyond government entities to include the maritime, aviation, and financial sectors, reflecting a growing interest in regional logistics and critical economic infrastructure.
|
||||
|
||||
<img width="1146" height="636" alt="imageedit_3_7755177569" src="https://github.com/user-attachments/assets/81ea1f39-68e1-45b5-89dd-77137734a8c4" />
|
||||
|
||||
Recent campaigns have targeted entities in Egypt, Saudi Arabia, the UAE, Turkey, Hungary, Turkmenistan, Israel, and South America. These attacks demonstrate the group’s ability to pivot between sectors while conducting multiple operations simultaneously. The campaign was active throughout 2025 and 2026. This simulation is based on research from Palo Alto Unit 42:
|
||||
[https://unit42.paloaltonetworks.com/boggy-serpens-threat-assessment/](https://unit42.paloaltonetworks.com/boggy-serpens-threat-assessment/)
|
||||
|
||||
|
||||
<img width="1262" height="700" alt="word-image-341009-175304-1-1262x700" src="https://github.com/user-attachments/assets/78362455-3c93-4a60-88ec-6132d407f166" />
|
||||
|
||||
|
||||
|
||||
|
||||
<img width="679" height="381" alt="Kitten" src="https://github.com/user-attachments/assets/5056d989-0c3d-42c5-a4dd-529664ac7057" />
|
||||
|
||||
|
||||
The initial campaign targeted project engineers using industry-specific terminology for subsea pipelines. The lure document was blurred in order to deceive targets into clicking “Enable Content,” thereby triggering the execution of the embedded macro.
|
||||
|
||||
Reference in New Issue
Block a user