Vault Panda

China

Details

VAULT PANDA, an adversary active since at least October 2021, targets the financial services, gambling, technology, academic, defense, and government sectors. These activities are likely intended to facilitate intelligence collection.  VAULT PANDA has access to multiple shared China-nexus malware families, including KEYPLUG, Winnti, Melofee, HelloBot, and ShadowPad. Additionally, the adversary use...

Objective

  • JtG9wMAuPHEcnY10X6C7gNR

Motivation

  • EgLpriO0xZFTmbw

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.