{"id":2266,"date":"2025-04-08T14:18:57","date_gmt":"2025-04-08T12:18:57","guid":{"rendered":"https:\/\/blogs.ugr.es\/seguridadinformatica\/?p=2266"},"modified":"2025-04-08T14:18:57","modified_gmt":"2025-04-08T12:18:57","slug":"que-es-una-apt-en-ciberseguridad","status":"publish","type":"post","link":"https:\/\/blogs.ugr.es\/seguridadinformatica\/que-es-una-apt-en-ciberseguridad\/","title":{"rendered":"\u00bfQu\u00e9 es una APT en ciberseguridad?"},"content":{"rendered":"<p><a href=\"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-content\/uploads\/sites\/47\/2018\/05\/vendetta-s\u00edmbolo-m\u00e1scara-para-el-grupo-hacktivista-anonymous-en-l\u00ednea.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-555 alignleft\" src=\"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-content\/uploads\/sites\/47\/2018\/05\/vendetta-s\u00edmbolo-m\u00e1scara-para-el-grupo-hacktivista-anonymous-en-l\u00ednea.jpg\" alt=\"\" width=\"190\" height=\"126\" srcset=\"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-content\/uploads\/sites\/47\/2018\/05\/vendetta-s\u00edmbolo-m\u00e1scara-para-el-grupo-hacktivista-anonymous-en-l\u00ednea.jpg 450w, https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-content\/uploads\/sites\/47\/2018\/05\/vendetta-s\u00edmbolo-m\u00e1scara-para-el-grupo-hacktivista-anonymous-en-l\u00ednea-300x200.jpg 300w\" sizes=\"auto, (max-width: 190px) 100vw, 190px\" \/><\/a>En ciberseguridad, <strong>APT<\/strong> significa <strong>Amenaza Persistente Avanzada<\/strong> (<em>Advanced Persistent Threat<\/em> en ingl\u00e9s). Se refiere a un tipo de ataque en el que un actor malicioso, que generalmente tiene grandes recursos y habilidades t\u00e9cnicas, obtiene acceso a una red de forma sigilosa y mantiene ese acceso durante un largo per\u00edodo de tiempo para robar informaci\u00f3n o causar da\u00f1o. Las APTs suelen ser dirigidas a organizaciones espec\u00edficas y tienen como objetivo la recopilaci\u00f3n de datos sensibles o la infiltraci\u00f3n profunda en los sistemas.<\/p>\n<h3>Caracter\u00edsticas principales de las APT:<\/h3>\n<ol>\n<li><strong>Persistencia<\/strong>: El atacante permanece dentro de la red durante un largo per\u00edodo de tiempo sin ser detectado.<\/li>\n<li><strong>Avanzada<\/strong>: Utiliza t\u00e9cnicas sofisticadas y herramientas personalizadas para evitar la detecci\u00f3n.<\/li>\n<li><strong>Objetivos espec\u00edficos<\/strong>: No se trata de ataques al azar, sino de ataques dirigidos a objetivos espec\u00edficos (como gobiernos, empresas grandes o infraestructuras cr\u00edticas).<\/li>\n<\/ol>\n<h3>Ejemplos de actores conocidos que llevan a cabo APTs incluyen:<\/h3>\n<ul>\n<li><strong>APT28 (Fancy Bear)<\/strong>: A menudo se ha asociado con Rusia.<\/li>\n<li><strong>APT29 (Cozy Bear)<\/strong>: Tambi\u00e9n se cree que est\u00e1 relacionado con Rusia.<\/li>\n<li><strong>APT10<\/strong>: Atribuido a China, conocido por su ataque a industrias tecnol\u00f3gicas y gubernamentales.<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ol>\n<li><strong>Andrea Cristaldi &#8211; MAPA<\/strong> &#8211; Recopilaci\u00f3n e historia de APT&#8217;s <a href=\"https:\/\/andreacristaldi.github.io\/APTmap\/\" target=\"_blank\" rel=\"noopener\">https:\/\/andreacristaldi.github.io\/APTmap\/<\/a><\/li>\n<li><strong>MITRE<\/strong>\u00a0 &#8211; Lista de APT&#8217;s<a href=\"https:\/\/attack.mitre.org\/groups\/\" target=\"_blank\" rel=\"noopener\"> https:\/\/attack.mitre.org\/groups\/<\/a><\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>En ciberseguridad, APT significa Amenaza Persistente Avanzada (Advanced Persistent Threat en ingl\u00e9s). Se refiere a un tipo de ataque en el que un actor malicioso, que generalmente tiene grandes recursos y habilidades t\u00e9cnicas, obtiene acceso a una red de forma sigilosa y mantiene ese acceso durante un largo per\u00edodo de tiempo para robar informaci\u00f3n o [&hellip;]<\/p>\n","protected":false},"author":27,"featured_media":555,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_genesis_hide_title":false,"_genesis_hide_breadcrumbs":false,"_genesis_hide_singular_image":false,"_genesis_hide_footer_widgets":false,"_genesis_custom_body_class":"","_genesis_custom_post_class":"","_genesis_layout":"","footnotes":"","_members_access_role":[],"_members_access_error":""},"categories":[16,12],"tags":[37,55,49,39,18],"class_list":["post-2266","post","type-post","status-publish","format-standard","has-post-thumbnail","category-buenas-practicas","category-noticias","tag-cibercrimen","tag-formacion","tag-fraude","tag-hacktivismo","tag-seguridad","entry"],"_links":{"self":[{"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/posts\/2266","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/users\/27"}],"replies":[{"embeddable":true,"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/comments?post=2266"}],"version-history":[{"count":1,"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/posts\/2266\/revisions"}],"predecessor-version":[{"id":2267,"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/posts\/2266\/revisions\/2267"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/media\/555"}],"wp:attachment":[{"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/media?parent=2266"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/categories?post=2266"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blogs.ugr.es\/seguridadinformatica\/wp-json\/wp\/v2\/tags?post=2266"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}