SYMBOLCOMMON_NAMEaka. SYNONYMS

Storm-0062  (Back to overview)

aka: DarkShadow, Oro0lxy

The cyberattack campaign that Microsoft uncovered was launched by a China-linked hacking group called Storm-0062. According to the company, the group is launching cyberattacks by exploiting a vulnerability in the Data Center and Server editions of Confluence. Those are versions of the application that companies run on-premises.


Associated Families

There are currently no families associated with this actor.


References
2023-11-02MicrosoftHeike Ritter
Monthly news - November 2023
Storm-0062
2023-10-13SentinelOneSentinelOne
The Good, the Bad and the Ugly in Cybersecurity – Week 41
Storm-0062
2023-10-11Twitter (@MsftSecIntel)Microsoft Threat Intelligence
Tweet on Storm-0062 exploiting CVE-2023-22515
Storm-0062

Credits: MISP Project