Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 22:55:22 UTC Home > List all groups > List all tools > List all groups using tool Sandboxie Tool: Sandboxie Names Sandboxie Category Tools Type Exfiltration Description Sandboxie is a sandbox-based isolation software for 32- and 64-bit Windows NT-based operating systems. It is being developed by David Xanatos since it became open source, before that it was developed by Sophos (which acquired it from Invincea, which acquired it earlier from the original author Ronen Tzur). It creates a sandbox-like isolated operating environment in which applications can be run or installed without permanently modifying the local or mapped drive. An isolated virtual environment allows controlled testing of untrusted programs and web surfing. Information Last change to this tool card: 15 May 2021 Download this tool card in JSON format All groups using tool Sandboxie Changed Name Country Observed APT groups Naikon, Lotus Panda 2010-Apr 2022 1 group listed (1 APT, 0 other, 0 unknown) https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=522f5413-4bd2-45b9-998a-1242a368a03a Page 1 of 2 Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=522f5413-4bd2-45b9-998a-1242a368a03a https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=522f5413-4bd2-45b9-998a-1242a368a03a Page 2 of 2 APT groups Naikon, Lotus Panda 2010-Apr 2022 1 group listed (1 APT, 0 other, 0 unknown) Page 1 of 2