Gold Open Source
ExplorePackagesVulnerabilitiesCWEsMCP ServersScan
Login
Gold Open Source

The authoritative source for production-ready open-source components. Every package, container image, AI model, and MCP server undergoes rigorous verification for security, malware, and license compliance.

Explore Gold

  • Explore Everything
  • Packages
  • Gold Certified Packages
  • Container Images
  • AI Models
  • MCP Servers
  • Agent Skills
  • Chip Manufacturers

Security Data & Tools

  • Scan Your Dependencies
  • Trending Threats
  • Threat RSS Feeds
  • CVE Database
  • Actively Exploited (KEV)
  • SGZ Zero-Days
  • CWE Index
  • MITRE ATT&CK
  • Malicious Packages
  • Security Glossary
  • Supply-Chain Report
  • Developers (API & Badge)
  • Chrome Extension
  • Credits & Data Sources

Products

  • The Platform
  • ESSCM
  • Portal
  • TPRM
  • OSM
  • Cowork
  • Code / Runner
  • Guard

Use Cases

  • Know Your Software
  • Auto-Fix Vulnerabilities
  • Asset Discovery
  • AI Governance
  • MCP Server Security
  • Supply Chain Compliance
  • Zero-Day Discovery
  • All Use Cases

Company

  • About
  • Pricing
  • Blog
  • Documentation
  • Safeguard Academy
  • Contact
  • Privacy Policy
  • Terms of Service

© 2026 Gold Open Source. All rights reserved.

Built with care bySafeguard
Home/ATT&CK/Groups/G0114
MITRE ATT&CK Group

Chimera (G0114)

ShareXLinkedInRedditHN

[Chimera](https://attack.mitre.org/groups/G0114) is a suspected China-based threat group that has been active since at least 2018 targeting the semiconductor industry in Taiwan as well as data from the airline industry.(Citation: Cycraft Chimera April 2020)(Citation: NCC Group Chimera January 2021)

▪Techniques used (59)

T1574.001DLLT1074.002Remote Data StagingT1053.005Scheduled TaskT1569.002Service ExecutionT1041Exfiltration Over C2 ChannelT1078Valid AccountsT1550.002Pass the HashT1071.001Web ProtocolsT1106Native APIT1556.001Domain Controller AuthenticationT1071.004DNST1482Domain Trust DiscoveryT1560.001Archive via UtilityT1021.006Windows Remote ManagementT1083File and Directory DiscoveryT1087.002Domain AccountT1057Process DiscoveryT1021.002SMB/Windows Admin SharesT1059.001PowerShellT1003.003NTDST1074.001Local Data StagingT1213.002SharepointT1135Network Share DiscoveryT1036.005Match Legitimate Resource Name or LocationT1570Lateral Tool TransferT1007System Service DiscoveryT1027.010Command ObfuscationT1685.005Clear Windows Event LogsT1016System Network Configuration DiscoveryT1046Network Service DiscoveryT1033System Owner/User DiscoveryT1087.001Local AccountT1572Protocol TunnelingT1078.002Domain AccountsT1069.001Local GroupsT1124System Time DiscoveryT1201Password Policy DiscoveryT1049System Network Connections DiscoveryT1059.003Windows Command ShellT1070.004File DeletionT1110.003Password SprayingT1114.001Local Email CollectionT1039Data from Network Shared DriveT1119Automated CollectionT1133External Remote ServicesT1110.004Credential StuffingT1680Local Storage DiscoveryT1114.002Remote Email CollectionT1012Query RegistryT1588.002ToolT1567.002Exfiltration to Cloud StorageT1070.006TimestompT1018Remote System DiscoveryT1589.001CredentialsT1047Windows Management InstrumentationT1021.001Remote Desktop ProtocolT1111Multi-Factor Authentication InterceptionT1217Browser Information DiscoveryT1105Ingress Tool Transfer

▪Software used (6)

S0029PsExectoolS0521BloodHoundtoolS0404esentutltoolS0039NettoolS0002MimikatztoolS0154Cobalt Strikemalware
G0114on MITRE ATT&CK →

MITRE ATT&CK® is a registered trademark of The MITRE Corporation. © 2026 The MITRE Corporation. This work is reproduced and distributed with the permission of The MITRE Corporation.