Intrusion setG1028

APT-C-23

Also tracked as Mantis, Arid Viper, Desert Falcon, TAG-63, Grey Karkadann, Big Bang APT, Two-tailed Scorpion

APT-C-23 is a threat group that has been active since at least 2014. APT-C-23 has primarily focused its operations on the Middle East, including Israeli military assets. APT-C-23 has developed mobile spyware targeting Android and iOS devices since 2017.

Documented techniques
0
First seen
2014
Basis
MITRE ATT&CK

Malware

Families MITRE records this group deploying. Detection names for these are a reasonable place to start.

Micropsia
Source: MITRE ATT&CK View the original record · Last synchronised 2026-09-09 · Origin and motivation are read from MITRE’s own description and are not structured fields in ATT&CK. Where the text does not attribute a group, this page leaves them blank rather than guessing.