0attributed CVEs
75ATT&CK techniques
0.0IDF score (tooling uniqueness)
0exclusive CVEs
—years active
About this actor
[FIN13](https://attack.mitre.org/groups/G1016) is a financially motivated cyber threat group that has targeted the financial, retail, and hospitality industries in Mexico and Latin America, as early as 2016. [FIN13](https://attack.mitre.org/groups/G1016) achieves its objectives by stealing intellectual property, financial data, mergers and acquisition information, or PII.(Citation: Mandiant FIN13 Aug 2022)(Citation: Sygnia Elephant Beetle Jan 2022)
Source: MITRE ATT&CK
Activity timeline
No activity events recorded.
Profile
| CVE | Risk | CVSS | EPSS | Published | Products |
|---|---|---|---|---|---|
| No attributed CVEs. | |||||
T1003T1003.001T1003.002T1003.003T1005T1016T1016.001T1021T1021.001T1021.002T1021.004T1021.006T1036T1036.004T1036.005T1046T1047T1049T1053T1053.005T1056T1056.001T1059T1059.001T1059.003T1059.005T1069T1071T1071.001T1074T1074.001T1078T1078.001T1082T1083T1087T1087.002T1090T1090.001T1098T1098.007T1105T1133T1134T1134.003T1135T1136T1136.001T1140T1190T1505T1505.003T1547T1547.001T1550T1550.002T1552T1552.001T1556T1560T1560.001T1564T1564.001T1565T1572T1574T1574.001T1587T1587.001T1588T1588.002T1589T1590T1590.004T1657
Mitigating controls (NIST 800-53)
| Control | Techniques covered | Coverage |
|---|---|---|
CM-6 | 47 / 75 | 63% |
SI-4 | 47 / 75 | 63% |
AC-3 | 38 / 75 | 51% |
AC-6 | 38 / 75 | 51% |
AC-2 | 37 / 75 | 49% |
CM-2 | 36 / 75 | 48% |
CM-7 | 35 / 75 | 47% |
AC-5 | 32 / 75 | 43% |
IA-2 | 30 / 75 | 40% |
CM-5 | 28 / 75 | 37% |
CA-7 | 24 / 75 | 32% |
SI-3 | 24 / 75 | 32% |
AC-4 | 21 / 75 | 28% |
RA-5 | 21 / 75 | 28% |
SC-7 | 20 / 75 | 27% |
Co-occurring actors
None.
Similar actors
Similar TTPs
- Operation Wocao 0.37
- APT39 0.36
- APT3 0.36
- Operation CuckooBees 0.35
- GALLIUM 0.35