Threat Actors · HAFNIUM
Techniques
44
Software
6
Tactics
14
Aliases
2
Description
HAFNIUM is a likely state-sponsored cyber espionage group operating out of China that has been active since at least January 2021. HAFNIUM primarily targets entities in the US across a number of industry sectors, including infectious disease researchers, law firms, higher education institutions, defense contractors, policy think tanks, and NGOs. HAFNIUM has targeted remote management tools and cloud software for intial access and has demonstrated an ability to quickly operationalize exploits for identified vulnerabilities in edge devices.(Citation: Microsoft HAFNIUM March 2020)(Citation: Volexity Exchange Marauder March 2021)(Citation: Microsoft Silk Typhoon MAR 2025)
Tactic Coverage
Techniques Used (44)
Registration Required
Showing 5 of 44 results
Sign up for free to see the full dataset, track CVEs, and get weekly threat digests.
Software Used (6)
References (7)