You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-xdr/microsoft-threat-actor-naming.md
+5-5Lines changed: 5 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -17,7 +17,7 @@ ms.custom:
17
17
- cx-ti
18
18
ms.topic: conceptual
19
19
search.appverid: met150
20
-
ms.date: 12/03/2024
20
+
ms.date: 12/05/2024
21
21
---
22
22
23
23
# How Microsoft names threat actors
@@ -42,7 +42,7 @@ In our new taxonomy, a weather event or *family name* represents one of the abov
42
42
43
43
Threat actors within the same weather family are given an adjective to distinguish actor groups with distinct tactics, techniques, and procedures (TTPs), infrastructure, objectives, or other identified patterns. For groups in development, we use a temporary designation of Storm and a four-digit number where there is a newly discovered, unknown, emerging, or developing cluster of threat activity.
44
44
45
-
The table shows how the new family names map to the threat actors that we track.
45
+
The table below shows how the family names map to the threat actors that we track.
46
46
47
47
|Actor category|Type|Family name|
48
48
|:---:|:---:|:---:|
@@ -52,7 +52,7 @@ The table shows how the new family names map to the threat actors that we track.
52
52
|Influence operations|Influence operations|Flood|
53
53
|Groups in development|Groups in development|Storm|
54
54
55
-
Use the following reference table to understand how our previously publicly disclosed old threat actor names translate to our new taxonomy.
55
+
The table below lists publicly disclosed threat actor names with their previous names, origin or threat type, and corresponding names used by other security vendors.
56
56
57
57
|Threat actor name|Previous name|Origin/Threat|Other names|
58
58
|:---:|:---:|:---:|:---:|
@@ -119,15 +119,15 @@ Use the following reference table to understand how our previously publicly disc
0 commit comments