Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.
Also known as: Blue Callisto, SEABORGIUM, Callisto Group, COLDRIVER, TA446, Star Blizzard, IRON FRONTIER, UNC4057, TAG-53, GOSSAMER BEAR, BlueCharlie, Cold River, Calisto, Nahr el bared, Nahr Elbard, Cobalt Edgewater, Seaborgium, Grey Pro, Mythic Ursa, Gossamer Bear, Reuse Team, COLD RELIC
In short, “Cold River” is a sophisticated threat (actor) that utilizes DNS subdomain hijacking, certificate spoofing, and covert tunneled command and control traffic in combination with complex and convincing lure documents and custom implants.
No exploited CVEs have been attributed to this threat actor yet.
Browse CVE Database