Threadlinqs IntelligenceStart free

Threat actorTracked since 2026-07

UNK_OutFlareAZ

As of 2026-09-13, UNK_OutFlareAZ is a threat actor tracked by Threadlinqs Intelligence across 3 threats spanning cloud, vulnerability, threat intel. ATT&CK coverage spans 33 techniques across 11 tactics in 3 of 3 tracked threats. Most-observed techniques: T1036 (Masquerading), T1036.005 (Match Legitimate Resource Name or Location), T1078.004 (Cloud Accounts).

Tracked threats
33 high
First seen
2026-07-14
Last seen
2026-09-13
ATT&CK techniques
33across 3 of 3 threats
Related CVEs
0None referenced
3 tracked threat(s) · Categories: CLOUD, VULNERABILITY, THREAT_INTEL

Activity timeline

UNK_OutFlareAZ appears in 3 tracked threats between and ; the busiest month was 2026-07 with 2 reports.

ATT&CK techniques observed

33 techniques observed across 3 of 3 tracked threats · Resource Development (6), Reconnaissance (5), Credential Access (4), Defense Impairment (4), Discovery (3), Initial Access (3)
  • T1036 Masquerading — Stealth (formerly Defense Evasion)observed in 2 of 3 tracked threats
  • T1036.005 Match Legitimate Resource Name or Location — Stealth (formerly Defense Evasion)observed in 2 of 3 tracked threats
  • T1078.004 Cloud Accounts — Initial Accessobserved in 2 of 3 tracked threats
  • T1087.004 Cloud Account — Discoveryobserved in 2 of 3 tracked threats
  • T1110 Brute Force — Credential Accessobserved in 2 of 3 tracked threats
  • T1110.004 Credential Stuffing — Credential Accessobserved in 2 of 3 tracked threats
  • T1201 Password Policy Discovery — Discoveryobserved in 2 of 3 tracked threats
  • T1583.006 Acquire Infrastructure: Web Services — Resource Developmentobserved in 2 of 3 tracked threats
  • T1589 Gather Victim Identity Information — Reconnaissanceobserved in 2 of 3 tracked threats
  • T1589.001 Credentials — Reconnaissanceobserved in 2 of 3 tracked threats
  • T1589.002 Email Addresses — Reconnaissanceobserved in 2 of 3 tracked threats
  • T1078 Valid Accounts — Initial Accessobserved in 1 of 3 tracked threats
  • T1087 Account Discovery — Discoveryobserved in 1 of 3 tracked threats
  • T1090 Proxy — Command and Controlobserved in 1 of 3 tracked threats
  • T1090.002 External Proxy — Command and Controlobserved in 1 of 3 tracked threats

Tracked threats