Google launches new cryptonym-based threat actor naming system

Google Cloud published an updated framework for naming cyber threat actors using memorable two-word cryptonyms to replace traditional naming conventions. The system aims to standardize threat intelligence communication and improve actor attribution clarity.

9 reportsother

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

New. Prepare to be confused (or even more confused.) "Our new schema utilizes a cryptonym-based approach, employing memorable two-word combinations for each distinct threat actor." "The first word is

mastodon:infosec-exchangeother67d ago kagi ↗

New. Prepare to be confused (or even more confused.) "Our new schema utilizes a cryptonym-based approach, employing memorable two-word combinations for each distinct threat actor." "The first word is a unique and memorable term chosen to represent the specific actor, particularly names that may have been used in prior public reporting." "The second word categorizes threat clusters by motivation, a

🔒 Security News Digest - 2026-07-24 📊 10 updates from 5 sources: 🦠 Malwarebytes: Google wants to store a selfie video of your face https://www. malwarebytes.com/blog/privacy/ 2026/07/google-wants-t

mastodon:infosec-exchangeother67d ago kagi ↗

🔒 Security News Digest - 2026-07-24 📊 10 updates from 5 sources: 🦠 Malwarebytes: Google wants to store a selfie video of your face https://www. malwarebytes.com/blog/privacy/ 2026/07/google-wants-to-store-a-selfie-video-of-your-face 🔹 Threat Intelligence: Updated Cyber Threat Actor Naming System https:// cloud.google.com/blog/topics/t hreat-intelligence/updated-cyber-threat-actor-naming-system

Updated Cyber Threat Actor Naming System by Google Suggested new schema utilizes a cryptonym-based approach, employing memorable two-word combinations for each distinct threat actor instead of sequent

mastodon:infosec-exchangeother64d ago kagi ↗

Updated Cyber Threat Actor Naming System by Google Suggested new schema utilizes a cryptonym-based approach, employing memorable two-word combinations for each distinct threat actor instead of sequential numbers or disparate identifiers (e.g., APT1) https:// cloud.google.com/blog/topics/t hreat-intelligence/updated-cyber-threat-actor-naming-system

https:// cloud.google.com/blog/topics/t hreat-intelligence/updated-cyber-threat-actor-naming-system/ Google just XKCD 927ed their threat actor nomenclature, just because. Surely this will speed up res

mastodon:infosec-exchangeother64d ago kagi ↗

https:// cloud.google.com/blog/topics/t hreat-intelligence/updated-cyber-threat-actor-naming-system/ Google just XKCD 927ed their threat actor nomenclature, just because. Surely this will speed up response time, because whenever I think about the country of Iran, I always immediately think of the word "ION" 🙄 It's like the result of someone's Rorschach test was used to justify the release of a ne