Turbine Panda

China

Details

CrowdStrike Intelligence tracks TURBINE PANDA in relation to attacks on a number of entities in the defense, aerospace, and manufacturing sectors primarily beginning in 2014. TURBINE PANDA heavily uses the PlugX RAT, popular among China-based targeted intrusion actors, often along with hyphenated C2 domains or domains that are meant to spoof targeted organizations.  TURBINE PANDA operations appear...

Community Identifiers

zX01BiADvu9hkOy

Objective

  • kDg8RI4dzHnj9rv0Y1G6AUteLPsp
  • L2Fw85rA4Zv3pOCzyofUJu1

Motivation

  • Tcu6Ly90zIDC4rE

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.