# Integrity Technology Group-enabled actors

> As of 2026-10-09, Integrity Technology Group-enabled actors is a China-nexus threat actor tracked by Threadlinqs Intelligence across 1 threat spanning apt. Also known as Flax Typhoon, Ethereal Panda, RedJuliett, Red Juliett.

- **Nation:** China
- **Tracked threats:** 1
- **Categories:** APT
- **Also known as:** Flax Typhoon, Ethereal Panda, RedJuliett, Red Juliett
- **As of:** 2026-10-09

## Tracked threats

- [Chinese Government-linked Actors Enabled by Integrity Technology Group Combine Automated and Hands-on Hacking Tools to Steal Sensitive Data (CISA AA26-281A)](https://intel.threadlinqs.com/threat/TL-2026-3054) — HIGH

## Related CVEs

8 CVEs referenced by tracked Integrity Technology Group-enabled actors activity.

- [CVE-2023-22894](https://intel.threadlinqs.com/cve/CVE-2023-22894)
- [CVE-2021-3199](https://intel.threadlinqs.com/cve/CVE-2021-3199)
- [CVE-2021-22205](https://intel.threadlinqs.com/cve/CVE-2021-22205)
- [CVE-2019-11510](https://intel.threadlinqs.com/cve/CVE-2019-11510)
- [CVE-2016-3081](https://intel.threadlinqs.com/cve/CVE-2016-3081)
- [CVE-2015-5477](https://intel.threadlinqs.com/cve/CVE-2015-5477)
- [CVE-2015-3306](https://intel.threadlinqs.com/cve/CVE-2015-3306)
- [CVE-2014-6278](https://intel.threadlinqs.com/cve/CVE-2014-6278)

## Full data

Infrastructure, IOC values and detection queries (Splunk SPL / Microsoft KQL / Sigma) require the Threadlinqs MCP server (Purple tier): https://intel.threadlinqs.com/mcp

Canonical: https://intel.threadlinqs.com/actor/Integrity%20Technology%20Group-enabled%20actors
