This dangerous APT has expanded its skills with some new tools – here’s what we know



  • Mustang Panda upgrades CoolClient backdoor with new rootkit and expanded capabilities
  • New features include clipboard monitoring, proxy credential sniffing, and enhanced plugin ecosystem
  • Updated malware used against governments in Asia and Russia for espionage and data theft

Chinese state-sponsored hackers Mustang Panda have upgraded one of their backdoors with new capabilities, potentially making it even more dangerous than ever.

Security researchers at Kaspersky recently spotted the backdoor, called CoolClient, being used in an attack that deployed a brand-new rootkit.


https://cdn.mos.cms.futurecdn.net/EEXAxCUDKAq3frELz3rVYY-1920-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img