#toneshell

[ follow ]
#mustang-panda
fromThe Hacker News
2 weeks ago
Information security

Mustang Panda Uses Signed Kernel-Mode Rootkit to Load TONESHELL Backdoor

Mustang Panda used a kernel-mode rootkit driver to deploy a new TONESHELL backdoor against government organizations in Southeast and East Asia.
fromThe Hacker News
3 months ago
Information security

Mustang Panda Deploys SnakeDisk USB Worm to Deliver Yokai Backdoor on Thailand IPs

Mustang Panda deploys updated TONESHELL variants and a Thailand-targeting USB worm SnakeDisk that drops the Yokai backdoor and uses proxy-based C2 and evasion techniques.
[ Load more ]