Chinese State Hackers Target Tibetans with Supply Chain and Watering Hole Attacks

At least since September 2023, the threat actor with ties to China known as Evasive Panda has been planning supply chain and watering hole assaults on Tibetan users.

Delivering malicious downloaders for Windows and macOS that activate a known backdoor named MgBot and a previously unrecognized Windows implant called Nightdoor is the last step in the attack.

The results are based on research by ESET, which claims that the attackers gained access to at least three websites in order to conduct supply-chain compromises of Tibetan software companies and watering-hole attacks. January 2024 marked the discovery of the operation.

Evasive Panda, also known as Bronze Highland and Daggerfly, has been in operation since 2012. The Slovak cybersecurity company first revealed in April 2023 that Evasive Panda used MgBot read more Chinese State Hackers Target Tibetans with Supply Chain and Watering Hole Attacks.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *