Team Fursec
Attribution profile
- Type
- Nation State
- Location
- China
- Known incidents
- 1 incident
- Sources
- 0 sources
- First seen
- 2016-02-16
- Last seen
- 2016-02-16
- Updated
- 2026-07-31 19:32
- Aliases
- 1 alias
STIX characteristics
Threat actor characteristics are available to members.
Profile narrative
The threat actor referenced in the supplied material is identified by the alias Team Fursec. Open‑source citations associate this alias with a location situated in China. No further personal, organizational, or historical details about Team Fursec are disclosed in the provided documents. The only concrete identifiers presented are the alias name and the geographic attribution to China. All other characteristics of the actor remain undocumented based on the current source set.
The sources do not mention any specific industry sectors that Team Fursec is known to target. Likewise, no geographic regions of focus are described for the actor’s alleged operations. There is no statement regarding the actor’s strategic objectives, such as financial gain, espionage, or disruption. Because targeting preferences and goals are absent, any inference about preferred victims would be unsupported. The absence of sector, regional, and objective information leaves the actor’s mission profile unspecified.
No details concerning malware families, initial access vectors, or tooling styles used by Team Fursec are included in the documents. Similarly, the texts do not link the actor to any state sponsor, criminal consortium, or other affiliation. Consequently, no notable campaigns or publicly reported operations can be attributed to Team Fursec from the given sources. The material does not provide timestamps, victim counts, or technical indicators related to the actor’s activity. Therefore, the actor’s technical footprint remains undocumented in the supplied references.
The incident overview and article referenced in the material concern Constella Intelligence’s digital risk protection service. That service integrates 4iQ’s investigation platform, Alto Analytic’s public data analytics, and a large breach identity repository. The described functionality includes monitoring surface, deep, and dark web sources for disinformation and criminal activity. None of the referenced content attributes any of those capabilities or observations to Team Fursec. No additional reporting or threat intelligence links Team Fursec to the services or data described in the Constella Intelligence overview. As a result, the only verifiable facts about Team Fursec are its alias and its associated location in China.
Incidents
Attributed incidents are available to members.
1 incidentSources
Sources available to members: 0 sources.