Threat Actor
Storm-2372
- First Reported
- Sep 15, 2026
- Latest Reported
- Sep 15, 2026
Reported Context (1)
- Named as a separate actor whose post-authentication objectives resemble those of GhostCode; the article does not attribute the reported campaign to it. GhostCode Phishing Kit Abuses Microsoft Device-Code Authentication to Steal Account Tokens
MITRE ATT&CK (9)
Vendors (3)
Products (8)
Tools (2)
Industries (2)
Countries (3)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.