CiberLATAMbywhalemate

#APT5

This archive collects our reporting on APT5 and its observed activity across the cyberthreat landscape affecting Latin America. It brings together analysis, technical follow-up, and context on campaigns, tactics, and attribution linked to this actor, with an emphasis on what security teams need to track and understand.

ColCERT Warns on ORB3 CHARLIE Network

ColCERT says ORB3/CHARLIE is used for espionage against telecom and critical infrastructure in South America, with 16 nodes

Jul 13, 2026 · 36 min

ColCERT Warns on CHARLIE in Telecom

ColCERT warned about the CHARLIE relay network, linked to APT5 and APT15, affecting telecom operators and providers in Colombia.

Jul 12, 2026 · 2 min