SYMBOLCOMMON_NAMEaka. SYNONYMS

UNC6293  (Back to overview)


UNC6293 is a Russian state-sponsored threat actor identified by Google's Threat Intelligence Group (GTIG), which associates them with APT29 with low confidence. They have conducted campaigns utilizing social engineering tactics, including leveraging App-Specific Passwords for account compromises. GTIG has also noted a second campaign by UNC6293 that incorporates Ukrainian themes.


Associated Families

There are currently no families associated with this actor.


References
2025-06-18GoogleGabby Roncone, Wesley Shields
What’s in an ASP? Creative Phishing Attack on Prominent Academics and Critics of Russia
UNC6293

Credits: MISP Project