APT NOTES

About the product

APT Notes

A structured knowledge base of threat actors and their operations.

APT Notes is a source-driven intelligence catalogue for searching, filtering and pivoting between threat actors, aliases, campaigns, malware, tools, targeting, techniques and attribution claims.

It is a separate product from Hecavex Research ↗, which remains the publication for long-form investigations, analysis and commentary.

What it is not

APT Notes is not a live threat feed, detection service, SIEM, vulnerability scanner, authoritative attribution body or replacement for MITRE ATT&CK.

Editorial approach

Source claims are separated from APT Notes assessments. Alias overlap is represented explicitly, uncertainty is retained, and corrections appear in the public change history.

Read the complete methodology →