♡ Follow 0
Critical CVEs
Security researcher Chinmohan Nayak has detailed a WhatsApp-to-host attack chain leveraging three now-patched vulnerabilities in the OpenClaw personal AI assistant. The flaws,…
AI Security
AirDrop
Amazon
Amazon Q Developer
July 10, 2026
♡ Follow 0
Attack Groups
The China-aligned espionage group Mustang Panda is running two campaigns against Indian government and hydropower targets, deploying new malware and turning a…
Acronis
CERT-In
Citrix
Citrix Receiver
June 29, 2026
♡ Follow 0
Attack Groups
The Mustang Panda threat group has been observed using Zoho WorkDrive as a command and control channel in attacks targeting Indian government…
command-and-control
Indian government
Mustang Panda
Zoho WorkDrive
June 29, 2026
♡ Follow 0
Malware
SHARDLOADER is a malware loader used by Mustang Panda that sideloads a malicious DLL through legitimately signed binaries like Solid PDF Creator…
DLL Sideloading
loader
Mustang Panda
SHARDLOADER
June 29, 2026
♡ Follow 0
Malware
MINIRECON is a reworked variant of the Toneshell backdoor, beaconing over WebSocket on HTTPS, used by Mustang Panda.
backdoor
MINIRECON
Mustang Panda
Toneshell
June 29, 2026
♡ Follow 0
Malware
ZOHOMURK is a novel malware that uses hardcoded Zoho OAuth credentials to turn an attacker-controlled WorkDrive account into a dead drop for…
dead drop
exfiltration
Mustang Panda
Zoho WorkDrive
June 29, 2026
♡ Follow 0
Malware
Toneshell is a backdoor malware documented by IBM X-Force, used as a base for the MINIRECON variant by Mustang Panda.
backdoor
IBM X-Force
Mustang Panda
Toneshell
June 29, 2026
♡ Follow 0
Malware
LOTUSLITE is a backdoor used by Mustang Panda in attacks on India's banking sector and South Korean policy circles, staged through legitimate…
backdoor
banking
India
LOTUSLITE
June 29, 2026
♡ Follow 0
Cyber Products
Mustang Panda used Zoho WorkDrive as a command and control channel in attacks on Indian government entities.
command-and-control
Mustang Panda
Zoho WorkDrive
June 29, 2026
♡ Follow 0
Attack Groups
[Mustang Panda](https://attack.mitre.org/groups/G0129) is a China-based cyber espionage threat actor that has been conducting operations since at least 2012. [Mustang Panda](https://attack.mitre.org/groups/G0129) has been…
BRONZE PRESIDENT
CAMARO DRAGON
ClumsyToad
EARTH PRETA
May 12, 2026