logo

Murky Panda hackers exploit cloud trust to hack downstream customers

ID: b82fb778-d047-5bc4-9414-4b6992b77c16

STIX ID: report--b82fb778-d047-5bc4-9414-4b6992b77c16

Feed Name: Bleeping Computer

Threat Score
90/100

Date Published: 2025-08-22

Date Updated: 2026-04-20

Author: Lawrence Abrams

...
...

Murky Panda (Silk Typhoon/Hafnium) is a sophisticated state‑sponsored APT that targets government, technology, academic, legal, and professional services organizations by exploiting internet‑exposed vulnerabilities and compromising cloud providers and managed service relationships to pivot into downstream customer environments; the group has used zero‑day exploits, abused Entra ID service principals and delegated administrative privileges to read emails and steal sensitive data, and employs web shells and a Linux RAT (CloudedHope) while maintaining strong OPSEC.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.