Unc5174 — Threat Actor Profile, Campaigns & Targets

Threat entity extracted from intelligence sources

Frequency
5
occurrences
First Seen
December 17, 2025
Last Seen
May 5, 2026

Related Threat Clusters

  • Cisco Fixes Critical AsyncOS Vulnerability Under Attack

    Cisco has addressed a maximum-severity vulnerability in AsyncOS, tracked as CVE-2025-20393, which has been actively exploited for at least a month. The flaw affects Secure Email Gateway (SEG) and Secure Email and Web…

    11 articles · Updated January 15, 2026
  • LongNosedGoblin and UAT-8302: New China-Aligned APT Threats Targeting Governments

    In 2024, ESET identified a new China-aligned APT group named LongNosedGoblin, which targets governmental entities in Southeast Asia and Japan. The group employs a custom toolset, primarily using C#/.NET applications, to…

    8 articles · Updated May 5, 2026
  • Cisco ASA Zero-Day Exploited in State-Espionage Campaign

    Cisco disclosed a state-espionage campaign targeting its Adaptive Security Appliances (ASA), which are used for firewall and VPN functions. Attackers exploited two zero-day vulnerabilities to infiltrate government…

    27 articles · Updated December 18, 2025
  • Cisco Confirms Exploitation of AsyncOS Zero-Day by Chinese Hackers

    Cisco has reported an unpatched zero-day vulnerability (CVE-2025-20393) in its AsyncOS software, affecting Secure Email Gateway and Secure Email and Web Manager appliances. The vulnerability is being actively exploited…

    5 articles · Updated December 17, 2025

Recent Intelligence Reports

  • UAT — Blog.Talosintelligence · May 5, 2026
  • Cisco finally fixes AsyncOS zero — Bleepingcomputer · January 16, 2026
  • Cisco Vulnerability Exploit: Chinese Hackers Target Email Gateways — Technadu · December 18, 2025
  • Cisco warns of unpatched AsyncOS zero — Bleepingcomputer · December 17, 2025
  • UAT — Blog.Talosintelligence · December 17, 2025

CVSS v3.1 Breakdown