PLA Unit 61398 (Chinese: 61398部队, Pinyin: 61398 bùduì) is the Military Unit Cover Designator (MUCD)[1] of a People's Liberation Army advanced persiste...

Threat Actor Profile

APT1

State-sponsored threat group originating from CN. Suspected sponsor: China. Known to target Private sector, Government. Uses 36 known MITRE ATT&CK techniques.

36 TTPs Mapped 2 Industries Tracked Real-Time Alerts

Actor Overview

Origin Country
CN
Suspected Sponsor
China
Incident Types
Espionage
Known Techniques
36 TTPs

Target Industries

Private sectorGovernment

Suspected Victims

United StatesTaiwanIsraelNorwayUnited Arab EmiratesUnited KingdomSingaporeIndiaBelgiumSouth AfricaSwitzerlandCanadaFranceLuxembourgJapan

MITRE ATT&CK Techniques

T1087T1087.001T1583T1583.001T1560T1560.001T1119T1059T1059.003T1584T1584.001T1005T1114T1114.001T1114.002 +21 more

Related Threat Reports

Premium
APT Campaign Analysis - Q4 2025Dec 2025
New Tactics Observed in WildDec 2025
Infrastructure Mapping ReportDec 2025
Stay Updated

Get alerts when new intel on APT1 is published.

Actor Details

Primary Name
APT1
Known Aliases
COMMENT PANDA, PLA Unit 61398, Comment Crew, Byzantine Candor, Group 3, TG-8223, Comment Group, Brown Fox, GIF89a, ShadyRAT, G0006
Data Source
Precursor Intelligence
Need API Access?

Integrate threat actor data into your SIEM or SOAR.

View Plans →