Hellsing
- Origin
- CN
- Primary motivation
- espionage
- Sophistication
- intermediate
- Resource level
- team
- Actor type
- Espionage
- Last IoC activity
- 2026-06-15 10:45:04
- Profile updated
- 2026-07-07 11:48:36
Targeted industries: government-and-public-sector
Targeted regions: country_code:ph country_code:vn country_code:us country_code:in
Context
This threat actor uses spear-phishing techniques to compromise diplomatic targets in Southeast Asia, India, and the United States. It also seems to have targeted the APT 30. Possibly uses the same infrastructure as Mirage
Reports & references
- cfr.org — Hellsing (report)
- Kaspersky — 69567 (report)