This dangerous APT has expanded its skills with some new tools – here’s what we know


  • Mustang Panda upgrades CoolClient backdoor with new rootkit and extended capabilities
  • New features include clipboard monitoring, proxy credential sniffing, and improved plugin ecosystem
  • Updated malware used against governments in Asia and Russia for espionage and data theft

Chinese state-sponsored hackers Mustang Panda have upgraded one of their backdoors with new capabilities, potentially making it even more dangerous than ever.

Security researchers at Kaspersky recently discovered that the backdoor, called CoolClient, was used in an attack that deployed an entirely new rootkit.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top