Threat actor
MUSTANG PANDA
Tracked by CyberSIXT since Apr 1, 2026 · last activity Jun 2, 2026
Coverage timeline
-
Twill Typhoon RAT hits Asia Pacific firms via cloud mimic malwaresecurityonline.info · Jun 2, 2026
-
FDMTP backdoor v3.2 update tied to Mustang Panda espionagewww.infosecurity-magazine.com · May 14, 2026
-
Mustang Panda’s New LOTUSLITE Variant Targets India Banks, South Korea Policy Circlesthehackernews.com · Apr 22, 2026
-
Mustang Panda hits Indian banks with LotusLite backdoorwww.darkreading.com · Apr 21, 2026
-
Securelist 404 shows HoneyMyte, Evasive Panda, Cloud Atlas updatesecurelist.com · Apr 20, 2026
-
China linked TA416 revives EU govt espionage using cloud PlugXthehackernews.com · Apr 3, 2026
-
Chinese Hackers Target European Governments in Espionage Campaignswww.infosecurity-magazine.com · Apr 1, 2026