{"id":20493861,"url":"https://github.com/qeeqbox/threat-actors","last_synced_at":"2026-01-30T08:34:55.527Z","repository":{"id":170831532,"uuid":"621008811","full_name":"qeeqbox/threat-actors","owner":"qeeqbox","description":"A threat actor is any person, group, or entity that could harm to the cyber realm","archived":false,"fork":false,"pushed_at":"2024-01-29T00:53:51.000Z","size":40,"stargazers_count":2,"open_issues_count":0,"forks_count":0,"subscribers_count":1,"default_branch":"main","last_synced_at":"2025-01-16T05:55:50.767Z","etag":null,"topics":["infosecsimplified","qeeqbox","threat-actors"],"latest_commit_sha":null,"homepage":"","language":null,"has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"agpl-3.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/qeeqbox.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null}},"created_at":"2023-03-29T20:08:08.000Z","updated_at":"2023-09-08T18:42:19.000Z","dependencies_parsed_at":"2024-11-15T17:47:54.168Z","dependency_job_id":null,"html_url":"https://github.com/qeeqbox/threat-actors","commit_stats":null,"previous_names":["qeeqbox/threat-actors"],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/qeeqbox%2Fthreat-actors","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/qeeqbox%2Fthreat-actors/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/qeeqbox%2Fthreat-actors/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/qeeqbox%2Fthreat-actors/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/qeeqbox","download_url":"https://codeload.github.com/qeeqbox/threat-actors/tar.gz/refs/heads/main","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":242075451,"owners_count":20068225,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["infosecsimplified","qeeqbox","threat-actors"],"created_at":"2024-11-15T17:37:10.299Z","updated_at":"2026-01-30T08:34:55.495Z","avatar_url":"https://github.com/qeeqbox.png","language":null,"funding_links":[],"categories":[],"sub_categories":[],"readme":"### Threat Actors Types\n\n*   #### Nation-State\\\\Government-Sponsored\n    *   Types\n        *    Espionage\n            *   This type is interested in stealing state\\\\government secrets from businesses and government-run organizations\n        *   Warfare \n            *   This type is interested in sabotaging military\n    *   Well founded\n    *   Geopolitical\n    *   Common TTPs: spear phishing, direct compromise, custom malware and exploits\n*   #### Cybercriminals\n    *   This type is interested in stealing personal info from data-rich businesses and organizations for financial gain\n    *   Common TTPs: ransomware and phishing\n    *   Profit\n*   #### Terrorist Groups\n    *   This type is interested in sabotaging critical infrastructure\n    *   Sometimes include hacktivists\n    *   Ideological Violence\n*   #### Thrill-Seekers\n    *   Stratification\n*   #### Insider Threats\n    *   Types\n        *   Malicious Insiders\n            *   Individuals who agreed to help threat actors for financial gain\n        *   Incautious Insiders\n            *   Individuals who made an incorrect mistake that led to a cyberattack\n    *   Common TTPs: data exfiltration or privilege misuse\n*   #### Hacktivists\n    \n    *   This type is interested in advancing a specific political cause\n    *   Not interested in money\n    *   Ideological\n    *   Common TTPs: DDoS attacks, website defacements and doxing\n*   #### Script Kiddies\n    \n    *   This type uses other threat actors' tools to attack networks or systems\n    *   Low technical skills\n\n* * *\n\n### Hats\n\n*   White hat\n    *   Also known as ethical hackers, individuals who use their technical skills to protect networks and systems from threat actors\n*   Grey hat\n    *   Individual who is in between white and black hat\n    *   Issues cyber-attacks without the target's consent\n    *   Sometimes they disclose info about vulnerabilities before being patched\n*   Black hat\n    *   Also known as cybercriminals, individuals who use their technical skills for malicious intention\n*   Blue hat\n    *   Individuals who use their technical skills to lunch cyber attacks without causing damage (Or, seek revenge)\n*   Green hat\n    *   Similar script kiddies, individuals who lack technical skills and want to cause harm\n    *   They want to learn, whereas script kiddies are not\n*   Red hat\n    *   Individuals who use their technical skills to attack threat actors\n    *   They use unethical ways\n\n* * *\n\n## id\n5c5975ab-eb59-40e1-94ef-7fdec524f651\n\n## References\n- https://en.wikipedia.org/wiki/Threat_actor\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fqeeqbox%2Fthreat-actors","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fqeeqbox%2Fthreat-actors","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fqeeqbox%2Fthreat-actors/lists"}