Chinese Mustang Panda hackers deploy infostealers via CoolClient backdoor
A new version of the CoolClient backdoor, developed by the Chinese espionage threat outfit Mustang Panda, can monitor the clipboard and collect login credentials from browsers.
Researchers at Kaspersky claim that the malware has also been used to install a rootkit that has never been seen before. However, a future study will include a technical examination.
Since 2022, CoolClient has been connected to Mustang Panda and used in conjunction with PlugX and LuminousMoth as a backup backdoor.
The upgraded malware version was used by genuine software from Sangfor, a Chinese company that specializes in cybersecurity, cloud computing, and IT infrastructure technologies, to launch assaults against government organizations in Myanmar read more about Chinese Mustang Panda hackers deploy inf...

