TLP:AMBER — RUSSIAN APT INFRASTRUCTURE INTELLIGENCE
APTWatch

APT Intel Dashboard

Web DB | Full DB | Feeds | | No database loaded
apt_intel_web.db (web export — optimized for browser analysis) or apt_intel.db (full database — all tables including domains, URLs, and complete vulnerability data)
Load a database to begin
Infrastructure Pattern Analysis

Patterns discovered from vulnerability scan fingerprinting — SSL certificates, port signatures, and hosting indicators that link unknown hosts to known APT infrastructure.

Pattern Details
Scan Candidates (port fingerprint match)
Quick Exports

Run a query and download the results as CSV directly from the browser.

Database Health Check
Click "Run Health Check" to analyze database integrity.
Load a database to begin
Load a database to begin
Load a database to begin
Load a database to begin
Load a database to begin
Load a database to begin