Turbine Panda

China

Details

CrowdStrike Intelligence tracks TURBINE PANDA in relation to attacks on a number of entities in the defense, aerospace, and manufacturing sectors primarily beginning in 2014. TURBINE PANDA heavily uses the PlugX RAT, popular among China-based targeted intrusion actors, often along with hyphenated C2 domains or domains that are meant to spoof targeted organizations.  TURBINE PANDA operations appear...

Community Identifiers

fimFHnuDMOSab5R

Objective

  • aRvIp7qG8o1U0iHKcE5rkbX
  • yH6YhoIUOqpjtK1PisRnvuJ9XWFz

Motivation

  • crnwFyphN3B5R0L

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.