Updated Cyber Threat Actor Naming System
Google's Threat Intelligence Group is introducing a unified naming system for tracking threat actors, replacing the previous parallel naming schemas. This new system uses cryptonyms with two-word combinations for each threat actor, providing context and simplifying tracking. The new schema is designed to be simple and easy to follow, but acknowledges that direct comparisons between threat actors may not always be possible. This change aims to streamline operations and facilitate mapping to other naming taxonomies. Engineers should be aware of this new system to ensure consistency in threat tracking and reporting.