All Topics
All Topics
Technology
Technology
AI
AI
Business
Business
Entertainment
Entertainment
News
News
Programming
Programming
Security
Security
Science
Science
Design
Design
Environment
Environment
Finance
Finance
Crypto
Crypto
Politics
Politics
Sports
Sports
Education
Education
Gaming
Gaming
Art
Art
Music
Music
Health
Health
Books
Books
Food
Food
Travel
Travel
Personal
Personal
Bluesky
Twitter

Mustang Panda Targets Indian Government and Hydropower Groups via Zoho WorkDrive Abuse

By

CybersecurityNews

3h ago· 1 min readenNews

Summary

Mustang Panda, a threat actor group, is targeting Indian government and hydropower organizations using spear-phishing and sideloading malware. The group is abusing Zoho WorkDrive as a covert command-and-control channel to hide malicious traffic within legitimate cloud activity. Acronis identified three associated tools—SHARDLOADER, MINIRECON, and ZOHOMURK—and released indicators of compromise to aid defenders.

Source

bskyMustang Panda Targets Indian Government and Hydropower Groups via Zoho WorkDrive Abusehendryadrian.com

Key quotes

· 3 pulled
Mustang Panda is targeting Indian government and hydropower-related organizations with spear-phishing, sideloading malware, and abuse of Zoho WorkDrive as a covert command channel.
Acronis linked the activity to three tools—SHARDLOADER, MINIRECON, and ZOHOMURK—and published indicators to help defenders detect the campaign.
The group abused Zoho WorkDrive to hide command-and-control traffic inside normal cloud activity.
Snippet from the RSS feed
Mustang Panda is targeting Indian government and hydropower-related organizations with spear-phishing, sideloading malware, and abuse of Zoho WorkDrive as a covert command channel. Acronis linked the activity to three tools—SHARDLOADER, MIN...

You might also wanna read

Comments

Sign in to join the conversation.

No comments yet. Be the first.