ETDA สำนักงานพัฒนาธุรกรรมทางอิเล็กทรอนิกส์
Electronic Transactions Development Agency
Report
Search
Home > List all groups > Earth Minotaur

Threat Group Cards: A Threat Actor Encyclopedia

Permanent link APT group: Earth Minotaur

NamesEarth Minotaur (Trend Micro)
CountryChina China
MotivationInformation theft and espionage
First seen2019
Description(Trend Micro) We believe that Earth Minotaur is an intrusion set which hasn’t been publicly reported. In the first report of MOONSHINE exploit kit in 2019, the threat actor using the toolkit was named Poison Carp, Evil Eye. While both used the MOONSHINE exploit kit and had similar targets, we did not find further connections between Earth Minotaur and POISON CARP. The backdoor DarkNimbus had been developed in 2018 but was not found in any of POISON CARP’s previous activity. Therefore, we categorized them as two different intrusion sets.
ObservedSectors: Tibetan and Uyghur activists as well as those who are interested in their causes.
Tools usedDarkNimbus, MOONSHINE.
Information<https://www.trendmicro.com/en_us/research/24/l/earth-minotaur.html>

Last change to this card: 27 December 2024

Download this actor card in PDF or JSON format

Digital Service Security Center
Electronic Transactions Development Agency

Follow us on

Facebook Twitter

Report incidents

Telephone +66 (0)2-123-1227
E-mail [email protected]