Also known as: admin@338, Admin338, MAGNESIUM, Team338, G0018
China-based cyber threat group. It has previously used newsworthy events as lures to deliver malware and has primarily targeted organizations involved in financial, economic, and trade policy, typically using publicly available RATs such as PoisonIvy, as well as some non-public backdoors. This threat actor targets prodemocratic activists and organizations in Hong Kong, European and international financial institutions, and a U.S.-based think tank.
No exploited CVEs have been attributed to this threat actor yet.
Browse CVE Database