Turbine Panda

China

Details

CrowdStrike Intelligence tracks TURBINE PANDA in relation to attacks on a number of entities in the defense, aerospace, and manufacturing sectors primarily beginning in 2014. TURBINE PANDA heavily uses the PlugX RAT, popular among China-based targeted intrusion actors, often along with hyphenated C2 domains or domains that are meant to spoof targeted organizations.  TURBINE PANDA operations appear...

Community Identifiers

JZlXpEi3ybxosUr

Objective

  • M2xTe60ChqO4vUg9H1cAbVRZzPiE
  • DORk4dY6xWwhjSQf2HCXJnp

Motivation

  • GmOB9LizCp1Yn4Q

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.