Vault Panda

China

Details

VAULT PANDA, an adversary active since at least October 2021, targets the financial services, gambling, technology, academic, defense, and government sectors. These activities are likely intended to facilitate intelligence collection.  VAULT PANDA has access to multiple shared China-nexus malware families, including KEYPLUG, Winnti, Melofee, HelloBot, and ShadowPad. Additionally, the adversary use...

Objective

  • wnQ8zuPYoFT9D23K0XLkSrN

Motivation

  • COFuIDnLkGZzSHd

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.