Dragonfly 2.0
MITRE ATT&CK: G0074 View on attack.mitre.org
Aliases: IRON LIBERTY, DYMALLOY, Berserk Bear, Dragonfly 2.0
- Profile updated
- 2026-07-07 11:28:32
Context
Dragonfly 2.0 is a suspected Russian group that has targeted government entities and multiple U.S. critical infrastructure sectors since at least December 2015. There is debate over the extent of overlap between Dragonfly 2.0 and Dragonfly, but there is sufficient evidence to lead to these being tracked as two separate groups.
Related threat objects
- Dragonfly (threat-actor)
Reports & references
- fortune.com — Hack Energy Grid Symantec (report)
- MITRE ATT&CK — G0074 (report)
- dragos.com — Dymalloy (report)
- secureworks.com — Mcmd Malware Analysis (report)
- secureworks.com — Iron Liberty (report)
- Broadcom/Symantec — Dragonfly Western Energy Sector Targeted Sophisticated Attack Group (report)
- us-cert.gov — Ta18 074A (report)
External references
- mitre-attack — G0074
- DYMALLOY
- Berserk Bear
- IRON LIBERTY
- Dragonfly 2.0
- Dragos DYMALLOY
- Fortune Dragonfly 2.0 Sept 2017
- Secureworks MCMD July 2019
- Secureworks IRON LIBERTY
- Symantec Dragonfly Sept 2017
- US-CERT TA18-074A
- misp-galaxy
- misp-galaxy
- misp-galaxy
- misp-galaxy
- misp-galaxy
- misp-galaxy
- misp-galaxy