Cyber Resilience

Threat actor · all actors

Silent LibrarianG0122 state

🇮🇷 IR

aka Silent Librarian, TA407, COBALT DICKENS

Last updated: 2026-07-03

0attributed CVEs
20ATT&CK techniques
0.0IDF score (tooling uniqueness)
0exclusive CVEs
years active

About this actor

[Silent Librarian](https://attack.mitre.org/groups/G0122) is a group that has targeted research and proprietary data at universities, government agencies, and private sector companies worldwide since at least 2013. Members of [Silent Librarian](https://attack.mitre.org/groups/G0122) are known to have been affiliated with the Iran-based Mabna Institute which has conducted cyber intrusions at the behest of the government of Iran, specifically the Islamic Revolutionary Guard Corps (IRGC).(Citation: DOJ Iran Indictments March 2018)(Citation: Phish Labs Silent Librarian)(Citation: Malwarebytes Silent Librarian October 2020)

Source: MITRE ATT&CK

Activity timeline

No activity events recorded.

Profile

CVERiskCVSSEPSSPublishedProducts
No attributed CVEs.

Mitigating controls (NIST 800-53)

ControlTechniques coveredCoverage
CM-67 / 2035%
SI-47 / 2035%
CA-75 / 2025%
CM-25 / 2025%
SC-75 / 2025%
AC-204 / 2020%
AC-34 / 2020%
AC-44 / 2020%
IA-24 / 2020%
IA-54 / 2020%
AC-23 / 2015%
AC-53 / 2015%
AC-63 / 2015%
AC-162 / 2010%
AC-172 / 2010%

Co-occurring actors

None.

Similar actors

Same nation-state