← Back to Actors
Tropic Trooper
Tropic TrooperPirate PandaKeyBoy
[Tropic Trooper](https://attack.mitre.org/groups/G0081) is an unaffiliated threat group that has led targeted campaigns against targets in Taiwan, the Philippines, and Hong Kong. [Tropic Trooper](https://attack.mitre.org/groups/G0081) focuses on targeting government, healthcare, transportation, and high-tech industries and has been active since 2011.(Citation: TrendMicro Tropic Trooper Mar 2018)(Citation: Unit 42 Tropic Trooper Nov 2016)(Citation: TrendMicro Tropic Trooper May 2020)
40
Techniques
39
Covered
1
Gaps
98%
Coverage
Coverage39/40
GAPS (1)
COVERED (39)
T1016System Network Configuration Discovery35 det.T1020Automated Exfiltration17 det.T1027.003Steganography5 det.T1027.013Encrypted/Encoded File7 det.T1033System Owner/User Discovery59 det.T1036.005Match Legitimate Resource Name or Location44 det.T1046Network Service Discovery49 det.T1049System Network Connections Discovery21 det.T1052.001Exfiltration over USB4 det.T1055.001Dynamic-link Library Injection11 det.T1057Process Discovery18 det.T1059.003Windows Command Shell79 det.T1070.004File Deletion40 det.T1071.001Web Protocols74 det.T1071.004DNS31 det.T1078.003Local Accounts23 det.T1082System Information Discovery80 det.T1083File and Directory Discovery48 det.T1091Replication Through Removable Media8 det.T1105Ingress Tool Transfer170 det.T1106Native API27 det.T1119Automated Collection11 det.T1132.001Standard Encoding5 det.T1135Network Share Discovery16 det.T1140Deobfuscate/Decode Files or Information55 det.T1203Exploitation for Client Execution71 det.T1204.002Malicious File397 det.T1221Template Injection1 det.T1505.003Web Shell57 det.T1518Software Discovery15 det.T1518.001Security Software Discovery8 det.T1543.003Windows Service79 det.T1547.001Registry Run Keys / Startup Folder50 det.T1547.004Winlogon Helper DLL4 det.T1564.001Hidden Files and Directories23 det.T1566.001Spearphishing Attachment850 det.T1573Encrypted Channel31 det.T1573.002Asymmetric Cryptography6 det.T1574.001DLL106 det.