Cyber Resilience

Threat actor · all actors

DragonflyG0035 state

🇷🇺 RU · FSB

aka Dragonfly, TEMP.Isotope, DYMALLOY, Berserk Bear, TG-4192, Crouching Yeti, IRON LIBERTY, Energetic Bear, Ghost Blizzard, BROMINE, ALLANITE, CASTLE, Group 24, Havex, Koala Team, G0035, ATK6, ITG15, Blue Kraken

Last updated: 2026-07-03

0attributed CVEs
82ATT&CK techniques
0.0IDF score (tooling uniqueness)
0exclusive CVEs
years active

About this actor

[Dragonfly](https://attack.mitre.org/groups/G0035) is a cyber espionage group that has been attributed to Russia's Federal Security Service (FSB) Center 16.(Citation: DOJ Russia Targeting Critical Infrastructure March 2022)(Citation: UK GOV FSB Factsheet April 2022) Active since at least 2010, [Dragonfly](https://attack.mitre.org/groups/G0035) has targeted defense and aviation companies, government entities, companies related to industrial control systems, and critical infrastructure sectors worldwide through supply chain, spearphishing, and drive-by compromise attacks.(Citation: Symantec Dragonfly)(Citation: Secureworks IRON LIBERTY July 2019)(Citation: Symantec Dragonfly Sept 2017)(Citation: Fortune Dragonfly 2.0 Sept 2017)(Citation: Gigamon Berserk Bear October 2021)(Citation: CISA AA20-296A Berserk Bear December 2020)(Citation: Symantec Dragonfly 2.0 October 2017)

Source: MITRE ATT&CK

Activity timeline

No activity events recorded.

Profile

CVERiskCVSSEPSSPublishedProducts
No attributed CVEs.

Mitigating controls (NIST 800-53)

ControlTechniques coveredCoverage
SI-453 / 8265%
CM-650 / 8261%
CM-240 / 8249%
AC-335 / 8243%
AC-634 / 8241%
AC-232 / 8239%
CA-731 / 8238%
CM-731 / 8238%
SI-331 / 8238%
IA-226 / 8232%
SI-726 / 8232%
AC-525 / 8230%
AC-423 / 8228%
SC-723 / 8228%
CM-522 / 8227%

Co-occurring actors

None.

Similar actors

Similar TTPs