The White Company - Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-06 00:18:01 UTC Home > List all groups > The White Company APT group: The White Company Names The White Company (Cylance) G0089 (MITRE) Country [Unknown] Sponsor State-sponsored Motivation Information theft and espionage First seen 2017 Description (Cylance) Cylance has determined that Operation Shaheen was an espionage campaign executed over the course of the last year. It was a targeted campaign which appeared to focus on individuals and organizations in Pakistan, specifically the government and the military. Cylance’s window into this campaign, though significant, is not all-encompassing. Indeed, our research revealed evidence that The White Company conducted extensive prior reconnaissance of its targets, and continues to operate largely unnoticed by the security community. Observed Sectors: Defense, Government. Countries: Pakistan. Tools used Operations performed Nov 2017 Operation “Shaheen” We have dubbed the first campaign Operation Shaheen. It examines a complex espionage effort directed at the Pakistani military. Information MITRE ATT&CK Last change to this card: 16 August 2025 https://apt.etda.or.th/cgi-bin/showcard.cgi?u=7f575804-406b-4dde-b2ce-563eca80c703 Page 1 of 2 Download this actor card in PDF or JSON format Source: https://apt.etda.or.th/cgi-bin/showcard.cgi?u=7f575804-406b-4dde-b2ce-563eca80c703 https://apt.etda.or.th/cgi-bin/showcard.cgi?u=7f575804-406b-4dde-b2ce-563eca80c703 Page 2 of 2