News

'Infrastructure rotates and payloads can change, but the execution model persists': Chinese hackers return to target victims across Asia with new MustangPanda threat

  • Sead Fadilpašić--TechRadar
  • published date: 2026-05-15 10:18:14 UTC

Researchers spotted an updated version of the FDMTP backdoor being deployed through DLL sideloading.

<ul><li>Darktrace reported Twill Typhoon (Mustang Panda) targeting Asia‑Pacific and Japan with updated FDMTP backdoor v3.2.5.1</li><li>Attackers used DLL sideloading via spear‑phished ZIPs with Sogou… [+2585 chars]