FireEye reports having been attacked by a highly sophisticated threat actor, highly likely to be a state-sponsored attacker. The threat actors stole its red team tools. FireEye aims to share the details of their investigation, to better equip the entire community against malicious use of their tools. It’s not yet confirmed whether the threat actors aim to use these tools in cyber attacks. However, FireEye has released countermeasures to ensure awareness and protection against the attempted use of these Red Team tools.
Block the threat indicators at their respective controls.