logo

China's 'Evasive Panda' APT Spies on Taiwan Targets Across Platforms

ID: 5359980d-7c44-5ec6-b650-683cf7f51d15

STIX ID: report--5359980d-7c44-5ec6-b650-683cf7f51d15

Feed Name: Dark Reading

Threat Score
88/100

Date Published: 2024-07-23

Date Updated: 2026-04-21

Author: Nate Nelson, Contributing Writer

...
...

Evasive Panda (aka Daggerfly), a Chinese APT, is actively developing and iterating cross-platform espionage malware — including MgBot, Nightdoor/Trojan.Suzafk and Macma — to target telecoms, government entities, NGOs, universities and persons of interest (notably in Taiwan and a US NGO in China). The group demonstrates high technical sophistication by trojanizing APKs, developing SMS/DNS interception tools, supporting Linux and niche Solaris targets, using modular backdoors with varied C2 channels (TCP/OneDrive), and continuously updating tools to evade detection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.