Cyber Resilience

Threat actor · all actors

PROMETHIUMG0056 state

🇹🇷 TR

aka PROMETHIUM, StrongPity, G0056

Last updated: 2026-07-03

12attributed CVEs
19ATT&CK techniques
42.8IDF score (tooling uniqueness)
0exclusive CVEs
2008–2022years active

About this actor

[PROMETHIUM](https://attack.mitre.org/groups/G0056) is an activity group focused on espionage that has been active since at least 2012. The group has conducted operations globally with a heavy emphasis on Turkish targets. [PROMETHIUM](https://attack.mitre.org/groups/G0056) has demonstrated similarity to another activity group called [NEODYMIUM](https://attack.mitre.org/groups/G0055) due to overlapping victim and campaign characteristics.(Citation: Microsoft NEODYMIUM Dec 2016)(Citation: Microsoft SIR Vol 21)(Citation: Talos Promethium June 2020)

Source: MITRE ATT&CK

Activity timeline

Profile

CVERiskCVSSEPSSPublishedProducts
CVE-2010-0188 KEV10.07.80.97512010-02-22see CVE
CVE-2010-0840 KEV10.09.80.96172010-04-01see CVE
CVE-2010-1297 KEV10.07.80.93392010-06-08see CVE
CVE-2010-2568 KEV10.07.80.97342010-07-22see CVE
CVE-2008-2551 8.00.00.95282008-06-04see CVE
CVE-2010-3336 8.00.00.86252010-11-10see CVE
CVE-2010-3653 8.00.00.92772010-10-26see CVE
CVE-2011-0097 8.00.00.94672011-04-13see CVE
CVE-2012-0056 8.00.00.78712012-01-27see CVE
CVE-2013-1493 8.00.00.96452013-03-05see CVE
CVE-2013-2460 8.00.00.97102013-06-18see CVE
CVE-2015-0072 8.00.00.96892015-02-07see CVE

Mitigating controls (NIST 800-53)

ControlTechniques coveredCoverage
CM-611 / 1958%
SI-411 / 1958%
CA-710 / 1953%
AC-39 / 1947%
CM-29 / 1947%
CM-79 / 1947%
AC-68 / 1942%
AC-27 / 1937%
SI-77 / 1937%
SC-76 / 1932%
SI-36 / 1932%
AC-45 / 1926%
CM-55 / 1926%
SI-105 / 1926%
AC-54 / 1921%

Co-occurring actors

Similar actors

Similar TTPs

Overlapping CVEs

Active in same years

Same nation-state