APT Profile: TEMP.Veles

Aliases: TEMP.Veles, XENOTIME

Description

[TEMP.Veles](https://attack.mitre.org/groups/G0088) is a Russia-based threat group that has targeted critical infrastructure. The group has been observed utilizing [TRITON](https://attack.mitre.org/software/S0609), a malware framework designed to manipulate industrial safety systems.(Citation: FireEye TRITON 2019)(Citation: FireEye TEMP.Veles 2018)(Citation: FireEye TEMP.Veles JSON April 2019)

Malware & Tools

Tools: Mimikatz, PsExec

← Return to Home ← Back to APT Search