NightEagle
Aliases: APT-Q-95
- First seen
- 2023-01-01 00:00:00
- Origin
- US
- Primary motivation
- espionage
- Sophistication
- advanced
- Resource level
- government
- Actor type
- Espionage
- Profile updated
- 2026-07-07 12:22:01
Targeted industries: defense-and-aerospace technology-and-telecommunications
Targeted regions: country_code:cn
Context
NightEagle is an advanced Threat Actor that targeted China's High-Tech Industry and Military Organisation, leveraging sophisticated techniques, 0 days, and specialized detection avoiding malware. The threat actor seems to have access to significant funding, with dedicated infrastructure, and focuses on low-noise, low-impact intelligence gathering operations. NightEagle is identified as a North-American, state-sponsored or affiliated group that has been active since at least 2023.
Reports & references
- authentic8.com — Cyber Intel Brief Nighteagle Apt Ai Deepfakes Spnego Flaw (report)
- thehackernews.com — Nighteagle Apt Exploits Microsoft (report)
- cybersecuritynews.com — Nighteagle Apt Exploiting 0 Days (report)