APT / THREAT GROUP
Phoenix
2
aliases
Last seen:Mar 17, 2026
Intelligence Profile
Malware family tracked by Malpedia. ID: apk.phoenix
Threat Analysis
Phoenix is a known-sophistication threat actor of undetermined national origin, engaged in cyber operations with a primary motivation of unknown activity patterns.
Intelligence Reports Mentioning Phoenix
ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact
SecurityWeek· Jun 10, 2026
An ICE Firearms Trainer Was Involved in At Least 4 Deadly Shootings
Wired Security· May 18, 2026
ICS Patch Tuesday: 8 Industrial Giants Publish New Security Advisories
SecurityWeek· Apr 15, 2026
New Perseus Android Banking Malware Monitors Notes Apps to Extract Sensitive Data
The Hacker News· Mar 19, 2026
External References
Quick Facts
TypeAPT / Threat Group
Aliases2
Also Known As
apk.phoenixPhoenix
External Intelligence
Malpedia: apk.phoenixResearch Links
Data sourced from Malpedia, Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Actor attribution is based on available intelligence and may be incomplete.