Dragonfly 2.0

MITRE ATT&CK: G0074 View on attack.mitre.org

Aliases: IRON LIBERTY, DYMALLOY, Berserk Bear, Dragonfly 2.0

Profile updated
2026-07-07 11:28:32

Context

Dragonfly 2.0 is a suspected Russian group that has targeted government entities and multiple U.S. critical infrastructure sectors since at least December 2015. There is debate over the extent of overlap between Dragonfly 2.0 and Dragonfly, but there is sufficient evidence to lead to these being tracked as two separate groups.

Related threat objects

Reports & references

  • fortune.com — Hack Energy Grid Symantec (report)
  • MITRE ATT&CK — G0074 (report)
  • dragos.com — Dymalloy (report)
  • secureworks.com — Mcmd Malware Analysis (report)
  • secureworks.com — Iron Liberty (report)
  • Broadcom/Symantec — Dragonfly Western Energy Sector Targeted Sophisticated Attack Group (report)
  • us-cert.gov — Ta18 074A (report)

External references