Skip to content

Threat actor

YITU

Last fetched

YITU is a threat actor tracked in WhisperGraph's MITRE ATT&CK corpus, observed using 0 techniques.

Description

YITU is a Chinese company that specializes in surveillance technology. The company has gained recognition for its advanced capabilities in facial recognition, so much so that it won first place in a 2017 facial recognition algorithm contest held by the United States government's Office of the Director of National Intelligence. Yitu provides high-tech surveillance in the UAE, where it maintains an office in Abu Dhabi. Yitu Limited owns or controls, directly or indirectly, Shanghai Yitu Technology Co., Ltd. (Yitu), an entity that operates or has operated in the surveillance technology sector of the economy of the PRC. Yitu has been involved in developing facial recognition technology that looks exclusively for Uyghurs and has been integrated into China’s rapidly expanding networks of surveillance cameras. In addition, Yitu has established an overseas office to export its surveillance technology to foreign law enforcement agencies. Yitu has gained wide recognition for its Dragonfly Eye System, a facial scanning platform that can identify a person from a database of at least 2 billion people in a matter of seconds.

Techniques by tactic

No ATT&CK techniques are recorded for YITU in WhisperGraph.

Attributed infrastructure

None published. WhisperGraph carries no ATTRIBUTED_TO edge to YITU today — this states the absence of a published link, not that YITU has no infrastructure.

References

© The MITRE Corporation. This work is reproduced and distributed with the permission of The MITRE Corporation.

Related pages

Pivot from YITU into its techniques, tactics and any attributed infrastructure.

Queries

Resolves the slug to this actor, merging every duplicate node sharing the same name.


MATCH (a:ACTOR)
WHERE a.name =~ $pattern OR any(x IN a.aliases WHERE x =~ $pattern)
RETURN a.id AS id, a.name AS name, a.aliases AS aliases, a.description AS description,
       a.references AS references, a.campaigns AS campaigns
LIMIT 25
Run yourself →

Techniques this actor uses, grouped by the tactic each one serves.


MATCH (a:ACTOR {name: $name})-[:USES_TECHNIQUE]->(t:ATTACK_PATTERN)
OPTIONAL MATCH (t)-[:USES_TACTIC]->(tac:ATTACK_PATTERN)
RETURN t.id AS techniqueId, t.name AS techniqueName, tac.id AS tacticId, tac.name AS tacticName
LIMIT 1000
Run yourself →

Infrastructure publicly attributed to this actor.


MATCH (n)-[:ATTRIBUTED_TO]->(a:ACTOR {name: $name})
RETURN labels(n)[0] AS kind, n.name AS name
LIMIT 25
Run yourself →

Or query Whisper from your own LLM workflow via the Whisper MCP server.