Cyber overview
Cyber threat actor

APT35

Iranian state-sponsored (IRGC-linked) · active since 2011

Long-running social-engineering-heavy espionage group targeting US officials, journalists, and dissidents, including reported attempts against presidential campaign staff.

Aliases
Charming KittenMint SandstormPhosphorus
Primary targets
US officials Journalists Academics Political campaigns

MITRE ATT&CK techniques

0 techniques mapped · click any technique ID to open the MITRE ATT&CK entry, any CVE to view its NVD record, or any citation for source reporting.

No MITRE ATT&CK mapping available yet for APT35.

Curated incidents

  1. 2016-08-01·Government / Political·United States
    Charming Kitten (APT35) targets US presidential campaign officials

    Iranian operators used spearphishing personas to target email accounts associated with a US presidential campaign.