Robuta

Sponsor of the Day: Jerkmate
https://www.ibm.com/think/x-force/hive0154-drops-updated-toneshell-backdoor Hive0154, aka Mustang Panda, drops updated Toneshell backdoor and novel SnakeDisk USB worm | IBM Nov 19, 2025 - Hive0154 wreaks havoc on Singapore and Thailand using a new Toneshell backdoor and SnakeDisk USB worm. mustang pandaakadropsupdatedbackdoor https://www.techsuppose.com/cyber-security/pubload-pubshell-malware-used-in-mustang-pandas/ PUBLOAD & Pubshell Malware Used in Mustang Panda's - TechSuppose Jun 28, 2025 - Chinese APT Mustang Panda deploys PUBLOAD and Pubshell malware in targeted cyber espionage attacks across Europe and Asia. mustang pandamalwareusedtechsuppose https://hackread.com/mustang-panda-india-s-korea-lotuslite-backdoor/ Mustang Panda Hits India and S. Korea with Updated LOTUSLITE Backdoor Apr 22, 2026 - Mustang Panda is using an updated version of LOTUSLITE backdoor to target Indian banks and Korean diplomats with DLL sideloading attack. mustang pandahits indiakoreaupdatedbackdoor https://www.acronis.com/en/tru/posts/same-packet-different-magic-mustang-panda-hits-indias-banking-sector-and-korea-geopolitics/ Same packet, different magic: Mustang Panda hits India's banking sector and Korea geopolitics Acronis Threat Research Unit (TRU) identified a new variant of the LOTUSLITE backdoor with a theme related to India's banking sector, delivered via DLL... mustang pandahits indiabanking sectorkorea geopoliticspacket