All threat actors

APT42 is an Iranian-sponsored cyber espionage group that conducts surveillance and information collection operations. The group primarily targets individuals and organizations of strategic interest to the Iranian government, including opposition groups, diaspora communities, journalists, and researchers. APT42 employs phishing campaigns and mobile malware to access personal and corporate accounts, enabling location tracking, communication interception, and data exfiltration. The group is associated with several malware families and has been linked to activities involving the PINEFLOWER Android malware.

Also known as

GreenBravo

Create a free account to see the reports

Sign in or create a free account to see every report that names APT42.

Create free account