← Back to all threat actors

Inception

Also known as Inception Framework, Cloud Atlas
Tracked as G0100

Inception is a cyber espionage group active since at least 2014. The group has targeted multiple industries and governmental entities primarily in Russia, but has also been active in the United States and throughout Europe, Asia, Africa, and the Middle East.

How we source and review actor profiles
Status
Active

Activity timeline

A dated ledger of actor-claimed victims, campaigns, indicators, identity mappings, relationships, and CVE links. Each date states what it measures. For extensive leak-site histories, victim entries are limited to the 100 most recent distinct listings.

Cataloged
IdentityAlias: Inception Framework

Reviewed identity mapping approved on this date.

Cataloged
IdentityAlias: Cloud Atlas

Reviewed identity mapping approved on this date.

Cataloged
IdentityTracking identifier: G0100

Reviewed identity mapping approved on this date.

Identity and attribution

Exact names and tracking identifiers resolve to this canonical profile. Rebrands, affiliations, and overlapping clusters remain separate confidence-rated relationships.

Name map

InceptionCanonical Name
Cloud AtlasAlias
Inception FrameworkAlias
G0100Tracking Id

Loading CVEs, techniques, indicators, malware, victims, and activity...