Threat actor
Frontiir
Last fetched
Frontiir is a threat actor tracked in WhisperGraph's MITRE ATT&CK corpus, observed using 0 techniques.
Description
Frontiir is a Myanmar-based internet service provider (ISP) that has been facilitating digital surveillance for the country's military junta. The company operates under the Myanmar Net brand, providing internet services to millions of users. Investigations have revealed that Frontiir hosts surveillance equipment developed by Geedge Networks, a Chinese cybersecurity firm founded by Fang Binxing, known as the "father" of China's Great Firewall. This equipment reportedly enables the interception and decryption of web traffic, blocking of websites, and prevention of Virtual Private Network (VPN) usage, thereby restricting access to uncensored information. Frontiir's Yangon data center has been identified as housing this surveillance technology.
Techniques by tactic
No ATT&CK techniques are recorded for Frontiir in WhisperGraph.
Attributed infrastructure
None published. WhisperGraph carries no ATTRIBUTED_TO edge to Frontiir today — this states the absence of a published link, not that Frontiir has no infrastructure.
References
- https://www.financeuncovered.org/stories/british-norwegian-and-danish-governments-back-internet-provider-in-military-run-myanmar-which-hosts-notorious-chinese-surveillance-system
- https://www.business-humanrights.org/my/latest-news/myanmar-internet-service-provider-alleged-to-use-chinese-technology-to-monitor-users-online-incl-cos-comments/
- https://www.irrawaddy.com/news/myanmar-china-watch/mastermind-of-chinas-great-firewall-powering-myanmar-juntas-digital-repression-report.html
- https://www.frontiir.com/frontiir-products/innovation/
© The MITRE Corporation. This work is reproduced and distributed with the permission of The MITRE Corporation.
Related pages
Pivot from Frontiir into its techniques, tactics and any attributed infrastructure.
Queries
Resolves the slug to this actor, merging every duplicate node sharing the same name.
MATCH (a:ACTOR)
WHERE a.name =~ $pattern OR any(x IN a.aliases WHERE x =~ $pattern)
RETURN a.id AS id, a.name AS name, a.aliases AS aliases, a.description AS description,
a.references AS references, a.campaigns AS campaigns
LIMIT 25Run yourself →Techniques this actor uses, grouped by the tactic each one serves.
MATCH (a:ACTOR {name: $name})-[:USES_TECHNIQUE]->(t:ATTACK_PATTERN)
OPTIONAL MATCH (t)-[:USES_TACTIC]->(tac:ATTACK_PATTERN)
RETURN t.id AS techniqueId, t.name AS techniqueName, tac.id AS tacticId, tac.name AS tacticName
LIMIT 1000Run yourself →Infrastructure publicly attributed to this actor.
MATCH (n)-[:ATTRIBUTED_TO]->(a:ACTOR {name: $name})
RETURN labels(n)[0] AS kind, n.name AS name
LIMIT 25Run yourself →Or query Whisper from your own LLM workflow via the Whisper MCP server.