APT / THREAT GROUP
PRISM
3
aliases
Last seen:Mar 17, 2026
Intelligence Profile
Malware family tracked by Malpedia. ID: elf.prism
Threat Analysis
PRISM is a known-sophistication threat actor of undetermined national origin, engaged in cyber operations with a primary motivation of unknown activity patterns.
Intelligence Reports Mentioning PRISM
FFmpeg fixes PixelSmash flaw in widely used video decoder
BleepingComputer· Jun 22, 2026
PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation
The Hacker News· May 30, 2026
APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO Allies
The Hacker News· Apr 8, 2026
The Next Cybersecurity Crisis Isn’t Breaches—It’s Data You Can’t Trust
SecurityWeek· Mar 31, 2026
Pawn Storm Campaign Deploys PRISMEX, Targets Government and Critical Infrastructure Entities
Trend Micro Research· Mar 25, 2026
External References
Quick Facts
TypeAPT / Threat Group
Aliases3
Also Known As
elf.prismPRISMwaterdrop
External Intelligence
Malpedia: elf.prismResearch Links
Data sourced from Malpedia, Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Actor attribution is based on available intelligence and may be incomplete.