lazarusholic

Everyday is lazarus.dayβ

WASSONITE

Dragos identified the WASSONITE activity group following a malware intrusion at the Kudankulam Nuclear Power Plant (KKNPP) nuclear facility in India. After further investigation, Dragos observed WASSONITE tools and behaviors targeting multiple industrial control system (ICS) entities including electric generation, nuclear energy, manufacturing, and organizations involved in space-centric research. WASSONITE has been active since at least 2018.

2020-05-30, Dragos
WASSONITE Threat Group

Also known as

 
Name Named by AKA First seen Last seen
APT-C-26 Qihoo360 Lazarus 2018-08-15 2025-02-11
APT-Q-1 Qianxin Lazarus 2023-03-14 2024-05-10
Appleworm Symantec Lazarus 2017-04-01 2021-02-18
BlackArtemis PWC Lazarus 2020-03-03 2023-04-12
Bureau121 - Lazarus - 2020-11-23
CitrineSleet Microsoft Lazarus 2023-10-06 2024-11-08
DEV-0139 Microsoft Lazarus 2022-12-06 2022-12-06
G0032 MITRE Lazarus 2017-05-31 2017-05-31
GodsApostles SelfGiven Lazarus 2014-11-24 -
GodsDisciples SelfGiven Lazarus 2014-11-24 -
Greedyman KRCERT Lazarus 2020-02-29 -
Group77 CiscoTalos Lazarus 2016-02-24 2019-09-13
GuardiansofPeace SelfGiven Lazarus 2014-11-24 2014-12-05
Hastati SecureWorks Lazarus - 2013-03-21
HiddenCobra USCISA Lazarus 2017-06-13 2020-06-23
ITG03 IBM Lazarus - -
LabyrinthChollima CrowdStrike Lazarus 2018-02-26 2024-12-13
Lazarus Novetta - 2016-02-24 2025-02-07
NickelAcademy SecureWorks Lazarus - 2024-10-08
Office91 - Lazarus - 2019-09-13
REF7001 Elastic Lazarus 2023-11-01 2024-10-03
REF9134 Elastic Lazarus 2023-06-21 2023-06-21
RGB-D3 IssuemakersLab Lazarus 2020-05-20 2020-09-08
SectorA01 NSHC Lazarus 2019-01-23 2025-02-11
SelectivePisces PaloaltoNetworks Lazarus 2022-09-26 2024-09-09
TA404 Proofpoint Lazarus 2022-07-14 2022-07-14
UNC1720 Mandiant Lazarus 2023-10-10 2023-10-10
Unit121 - Lazarus - 2020-11-23
WASSONITE Dragos Lazarus 2020-05-30 2023-02-14
WHOisTeam Mcafee Lazarus 2013-03-20 2014-12-23
Zinc Microsoft Lazarus 2017-12-19 2022-11-22

Reports