G1001 · 36 ATT&CK techniques · 9 correlated reports

HEXANE

Aliases: Lyceum, Siamesekitten, Spirlin

HEXANE is a cyber espionage threat group that has targeted oil & gas, telecommunications, aviation, and internet service provider organizations since at least 2017. Targeted companies have been located in the Middle East and Africa, including Israel, Saudi Arabia, Kuwait, Morocco, and Tunisia. HEXANE's TTPs appear similar to APT33 and OilRig but due to differences in victims and tools it is tracked as a separate entity.

Open interactive actor investigation

ATT&CK techniques

Correlated CTI and IR reports

Continue the investigation