{
	"id": "5244615e-e2bd-44fa-b0e8-63d1d7cfa33e",
	"created_at": "2026-04-06T01:30:21.524601Z",
	"updated_at": "2026-04-10T03:24:39.617501Z",
	"deleted_at": null,
	"sha1_hash": "8f8bfd4487195caaeec4d000b49d9aba6359da93",
	"title": "LevelBlue - Open Threat Exchange",
	"llm_title": "",
	"authors": "",
	"file_creation_date": "0001-01-01T00:00:00Z",
	"file_modification_date": "0001-01-01T00:00:00Z",
	"file_size": 27907,
	"plain_text": "LevelBlue - Open Threat Exchange\r\nBy zer0daydan\r\nArchived: 2026-04-06 01:04:01 UTC\r\nCreated 10 years ago by zer0daydan\r\nPublic\r\nTLP: Green\r\nSince its inception in 2009, the campaign has primarily targeted governments and companies in East Asia and\r\nGermany. However, the campaign appears to have shifted tactics and is once again targeting users in the United\r\nStates.\r\nSource: https://otx.alienvault.com/browse/pulses?q=tag:iheate\r\nhttps://otx.alienvault.com/browse/pulses?q=tag:iheate\r\nPage 1 of 1",
	"extraction_quality": 1,
	"language": "EN",
	"sources": [
		"ETDA"
	],
	"references": [
		"https://otx.alienvault.com/browse/pulses?q=tag:iheate"
	],
	"report_names": [
		"pulses?q=tag:iheate"
	],
	"threat_actors": [
		{
			"id": "77b28afd-8187-4917-a453-1d5a279cb5e4",
			"created_at": "2022-10-25T15:50:23.768278Z",
			"updated_at": "2026-04-10T02:00:05.266635Z",
			"deleted_at": null,
			"main_name": "Inception",
			"aliases": [
				"Inception Framework",
				"Cloud Atlas"
			],
			"source_name": "MITRE:Inception",
			"tools": [
				"PowerShower",
				"VBShower",
				"LaZagne"
			],
			"source_id": "MITRE",
			"reports": null
		}
	],
	"ts_created_at": 1775439021,
	"ts_updated_at": 1775791479,
	"ts_creation_date": 0,
	"ts_modification_date": 0,
	"files": {
		"pdf": "https://archive.orkl.eu/8f8bfd4487195caaeec4d000b49d9aba6359da93.pdf",
		"text": "https://archive.orkl.eu/8f8bfd4487195caaeec4d000b49d9aba6359da93.txt",
		"img": "https://archive.orkl.eu/8f8bfd4487195caaeec4d000b49d9aba6359da93.jpg"
	}
}