85
Sophistication
2022
First Seen
90
Notoriety
77
Stealth
86
Immersive Rating
90
Impact
48
Tactics Variety

Scattered Spider

English-speaking group thought to be comprised of British and American nationals. Known for high-profile breaches via social engineering. Compromised MGM Resorts in 2023, causing major outages. Uses SIM swapping and MFA fatigue to bypass security.

Key behaviours to watch:

  • Targeted spear-phishing leading to domain compromise and lateral movement.
  • Bulk exfiltration of archives via RAR compression and custom utilities (GETMAIL, MAPIGET).
  • Long dwell-time persistence with scheduled tasks, reused credentials, and stealthy C2.

Immersive coverage includes:

  • Threat Actors and Threats > APT Campaigns
  • Threat Hunting > APT29 / FIN7 analogues
  • Incident Response > Containment & Eradication
APT1
85
2004
80
45
72
88
70
APT10
92
2006
78
90
90
94
88
APT32
88
2014
70
79
83
87
83
APT34
84
2014
68
74
88
82
86
APT35
73
2014
65
65
81
74
80
Anonymous
40
2003
95
30
55
60
70
Chimera
68
2019
55
63
69
72
61
Cozy Bear
70
2012
57
71
64
64
58