PULSE NAME
20231027_Fancybear_IOCs
WHITE Fancybear ITSecurity@iwm.org.uk 2023-10-31 Modified: 2023-11-30
12
IOCs
MEDIUM VOLUME
the following are domains and IP address that have been used by the Russian backed Fancybear APT group where all of the following have been seen to be targeting multiple critical French networks and peripheral devices upon these where the following appears to have been an ongoing campaign since the late second half of 2026
Indicators of Compromise (12)
All domain
TYPEINDICATORDESCRIPTIONCREATED
domain 4ginfosource.com 2023-10-31
domain bhpcapital.com 2023-10-31
domain bplanka.com 2023-10-31
domain egymatec.ae 2023-10-31
domain goldenloafuae.com 2023-10-31
domain hbclife.in 2023-10-31
domain islandsailors.com 2023-10-31
domain regencyservice.in 2023-10-31
domain tsc-me.com 2023-10-31
domain ukwwfze.com 2023-10-31
domain vanadrink.com 2023-10-31
domain wizzsolutions.com 2023-10-31