Vault Panda

China

Details

VAULT PANDA, an adversary active since at least October 2021, targets the financial services, gambling, technology, academic, defense, and government sectors. These activities are likely intended to facilitate intelligence collection.  VAULT PANDA has access to multiple shared China-nexus malware families, including KEYPLUG, Winnti, Melofee, HelloBot, and ShadowPad. Additionally, the adversary use...

Objective

  • b2JF5nYo8cSxHLijavPNlCt

Motivation

  • 9XV7qAsglvYfJ5n

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.