SYMBOLCOMMON_NAMEaka. SYNONYMS

Operation Triangulation  (Back to overview)


Operation Triangulation is an ongoing APT campaign targeting iOS devices with zero-click iMessage exploits. The threat actor behind the campaign has been active since at least 2019 and continues to operate. The attack chain involves the delivery of a malicious iMessage attachment that launches a series of exploits, ultimately leading to the deployment of the TriangleDB implant. Kaspersky researchers have discovered and reported multiple vulnerabilities used in the campaign, with patches released by Apple.


Associated Families

There are currently no families associated with this actor.


References
2023-12-27Kaspersky LabsBoris Larin, Georgy Kucherin, Igor Kuznetsov, Leonid Bezvershenko, Mikhail Vinogradov, Valentin Pashkov
Operation Triangulation: The last (hardware) mystery
TriangleDB Operation Triangulation
2023-10-26Kaspersky LabsBoris Larin, Georgy Kucherin, Igor Kuznetsov, Leonid Bezvershenko, Valentin Pashkov
How to catch a wild triangle
TriangleDB Operation Triangulation
2023-10-23Kaspersky LabsGeorgy Kucherin, Leonid Bezvershenko, Valentin Pashkov
The outstanding stealth of Operation Triangulation
TriangleDB Operation Triangulation
2023-06-01Kaspersky LabsGeorgy Kucherin, Igor Kuznetsov, Leonid Bezvershenko, Valentin Pashkov
Operation Triangulation: iOS devices targeted with previously unknown malware
Operation Triangulation

Credits: MISP Project