logo

Unveiling LIMINAL PANDA: A Closer Look at China's Cyber Threats to the Telecom Sector

ID: 333ae287-4770-5ded-b2a6-8b70af3a3ed4

STIX ID: report--333ae287-4770-5ded-b2a6-8b70af3a3ed4

Feed Name: Crowdstrike Blog

Threat Score
88/100

Date Published: 2024-11-19

Date Updated: 2026-04-27

Author: Counter Adversary Operations

...
...

CrowdStrike publishes an intelligence overview of LIMINAL PANDA, a persistent adversary active since at least 2020 that targets telecommunications providers to enable covert access, command-and-control (including GSM protocol emulation), and exfiltration of subscriber data (call metadata and SMS). The report documents custom and publicly available tooling associated with the actor, outlines regional targeting (southern Asia and Africa), provides limited China-nexus attribution indicators, and offers defensive recommendations for telecom operators and network administrators.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.