Cyber Resilience

Campaign · all campaigns

FunnyDreamC0007 state

🇨🇳 CN

aka FunnyDream

Last updated: 2026-08-20

0attributed CVEs
19ATT&CK techniques
0.0IDF score (tooling uniqueness)
0exclusive CVEs
years active

About this actor

[FunnyDream](https://attack.mitre.org/campaigns/C0007) was a suspected Chinese cyber espionage campaign that targeted government and foreign organizations in Malaysia, the Philippines, Taiwan, Vietnam, and other parts of Southeast Asia. Security researchers linked the [FunnyDream](https://attack.mitre.org/campaigns/C0007) campaign to possible Chinese-speaking threat actors through the use of the [Chinoxy](https://attack.mitre.org/software/S1041) backdoor and noted infrastructure overlap with the TAG-16 threat group.(Citation: Bitdefender FunnyDream Campaign November 2020)(Citation: Kaspersky APT Trends Q1 2020)(Citation: Recorded Future Chinese Activity in Southeast Asia December 2021)

Source: MITRE ATT&CK

How we know this

Data origin
MITRE ATT&CK campaign Imported from the MITRE ATT&CK STIX bundle as a campaign object.
Techniques
MITRE ATT&CK STIX mappings — 19 ATT&CK techniques on file.
Named victims
None on file.

See how actor data is built for the full pipeline.

Activity timeline

No activity events recorded.

Profile

CVERiskCVSSEPSSPublishedProducts
No attributed CVEs.

Mitigating controls (NIST 800-53)

ControlTechniques coveredCoverage
CM-27 / 1937%
SI-37 / 1937%
SI-47 / 1937%
CM-65 / 1926%
RA-55 / 1926%
AC-174 / 1921%
AC-24 / 1921%
AC-34 / 1921%
AC-64 / 1921%
CM-74 / 1921%
SI-164 / 1921%
SI-74 / 1921%
CA-73 / 1916%
SC-73 / 1916%
SI-103 / 1916%

Co-occurring actors

None.

Similar actors

Similar TTPs

Same nation-state