Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-06 03:20:07 UTC Home > List all groups > List all tools > List all groups using tool VELVETTAP Tool: VELVETTAP Names VELVETTAP Category Malware Type Info stealer Description (Sygnia) A tool with the ability to capture network packets. The binary was executed on the F5 appliance with the argument ‘mgmt’, which is the name of the internal NIC of the F5 device. Information Last change to this tool card: 19 June 2024 Download this tool card in JSON format All groups using tool VELVETTAP Changed Name Country Observed APT groups Velvet Ant 2023-Jul 2024 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=336b85dd-d6c6-4b6d-9f31-4d3c0e8b1182 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=336b85dd-d6c6-4b6d-9f31-4d3c0e8b1182 Page 1 of 1