← Back to Actors
LuminousMoth
LuminousMoth
[LuminousMoth](https://attack.mitre.org/groups/G1014) is a Chinese-speaking cyber espionage group that has been active since at least October 2020. [LuminousMoth](https://attack.mitre.org/groups/G1014) has targeted high-profile organizations, including government entities, in Myanmar, the Philippines, Thailand, and other parts of Southeast Asia. Some security researchers have concluded there is a connection between [LuminousMoth](https://attack.mitre.org/groups/G1014) and [Mustang Panda](https://attack.mitre.org/groups/G0129) based on similar targeting and TTPs, as well as network infrastructu...
28
Techniques
26
Covered
2
Gaps
93%
Coverage
Coverage26/28
COVERED (26)
T1005Data from Local System47 det.T1030Data Transfer Size Limits7 det.T1033System Owner/User Discovery61 det.T1036.005Match Legitimate Resource Name or Location44 det.T1041Exfiltration Over C2 Channel31 det.T1053.005Scheduled Task99 det.T1071.001Web Protocols80 det.T1083File and Directory Discovery48 det.T1091Replication Through Removable Media8 det.T1105Ingress Tool Transfer183 det.T1112Modify Registry203 det.T1204.001Malicious Link10 det.T1539Steal Web Session Cookie15 det.T1547.001Registry Run Keys / Startup Folder53 det.T1553.002Code Signing3 det.T1557.002ARP Cache Poisoning3 det.T1560Archive Collected Data12 det.T1564.001Hidden Files and Directories25 det.T1566.002Spearphishing Link904 det.T1567.002Exfiltration to Cloud Storage29 det.T1574.001DLL109 det.T1587.001Malware10 det.T1588.001Malware2 det.T1588.002Tool13 det.T1588.004Digital Certificates1 det.T1608.001Upload Malware3 det.