Cyber Resilience

Threat actor · all actors

ChernoviteMISP-2ce00149 state

🇷🇺 RU

aka Chernovite

Last updated: 2026-08-20

1attributed CVEs
0ATT&CK techniques
4.3IDF score (tooling uniqueness)
1exclusive CVEs
2020years active

About this actor

Chernovite is a highly capable and sophisticated threat actor group that has developed a modular ICS malware framework called PIPEDREAM. They are known for targeting industrial control systems and operational technology environments, with the ability to disrupt, degrade, and potentially destroy physical processes. Chernovite has demonstrated a deep understanding of ICS protocols and intrusion techniques, making them a significant threat to critical infrastructure sectors.

Names & naming systems

Each vendor coins its own name for the same actor. Where a name follows a known scheme we attribute it; the rest are listed honestly as unclassified.

DragosICS mineral names

Chernovite

How we know this

Data origin
MISP threat-actor galaxy Imported from the open-source MISP threat-actor galaxy.
Techniques
No ATT&CK techniques mapped.
Named victims
None on file.

Thin data: No ATT&CK techniques are mapped yet — the behavioural profile is empty.

See how actor data is built for the full pipeline.

Activity timeline

Profile

CVERiskCVSSEPSSPublishedProducts
CVE-2020-15368 5.55.50.13902020-06-29see CVE

No techniques attributed.

Co-occurring actors

None.

Similar actors

Active in same years