Cloud Threat Landscape
  • Incidents
  • Actors
  • Techniques
  • Defenses
  • Tools
  • Targeted Technologies
  • Posters & Newspapers
  • About
  • RSS
  • STIX
  • Back to wiz.io
Cloud Threat Landscape
👨🏻

Bapak

Tags
Cryptojacking
Attribution
🇮🇩
Incidents
Bapak Exploiting Stolen Cloud Access Keys
References
https://www.wiz.io/blog/detecting-behavioral-cloud-indicators-of-compromise-iocs
Last edited
Jan 27, 2025 12:27 PM
Status
Finalized
Cloud-fluent

`Bapak` is a group Wiz research detected across multiple customers, suggesting a systematic scanning of exposed credentials without any specific targeting. The group mainly operates out of IP addresses located in Indonesia, but occasionally employs VPNs to try and mask their activity.

Made with 💙 by Wiz

Last Updated: April 3, 2025