China's 'Evasive Panda' APT Spies on Taiwan Targets Across Platforms
ID: 5359980d-7c44-5ec6-b650-683cf7f51d15
STIX ID: report--5359980d-7c44-5ec6-b650-683cf7f51d15
Feed Name: Dark Reading
Evasive Panda (aka Daggerfly), a Chinese APT, is actively developing and iterating cross-platform espionage malware — including MgBot, Nightdoor/Trojan.Suzafk and Macma — to target telecoms, government entities, NGOs, universities and persons of interest (notably in Taiwan and a US NGO in China). The group demonstrates high technical sophistication by trojanizing APKs, developing SMS/DNS interception tools, supporting Linux and niche Solaris targets, using modular backdoors with varied C2 channels (TCP/OneDrive), and continuously updating tools to evade detection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
