UNC6783 (Mr. Raccoon)

Tracks the attribution and TTPs of UNC6783, a threat cluster linked to the "Mr. Raccoon" persona. Focuses on the group's exploitation of the Managed Perimeter via social engineering of BPOs and helpdesk staff. Key areas include real-time proxy phishing to bypass MFA, the hijacking of Zendesk environments, and the transition from initial access to high-stakes data exfiltration and corporate extortion.