G0129

G0129Mustang Panda

Description

[Mustang Panda](https://attack.mitre.org/groups/G0129) is a China-based cyber espionage threat actor that was first observed in 2017 but may have been conducting operations since at least 2014. [Mustang Panda](https://attack.mitre.org/groups/G0129) has targeted government entities, nonprofits, religious, and other non-governmental organizations in the U.S., Europe, Mongolia, Myanmar, Pakistan, and Vietnam, among others.(Citation: Crowdstrike MUSTANG PANDA June 2018)(Citation: Anomali MUSTANG PANDA October 2019)(Citation: Secureworks BRONZE PRESIDENT December 2019)

References

  1. https://attack.mitre.org/groups/G0129
  2. https://www.anomali.com/blog/china-based-apt-mustang-panda-targets-minority-groups-public-and-private-sector-organizations
  3. https://www.secureworks.com/research/bronze-president-targets-ngos
  4. https://go.recordedfuture.com/hubfs/reports/cta-2020-0728.pdf
  5. https://www.crowdstrike.com/blog/meet-crowdstrikes-adversary-of-the-month-for-june-mustang-panda/
  6. https://www.proofpoint.com/us/blog/threat-insight/ta416-goes-ground-and-returns-golang-plugx-malware-loader
  7. https://www.proofpoint.com/us/blog/threat-insight/good-bad-and-web-bug-ta416-increases-operational-tempo-against-european

Software attributed to this1

TypeTargetConfidenceTier
SoftwareRCSessions066295%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Group
Aquatic Panda
Group
Scarlet Mimic
Actor
Evasive Panda
Actor
GOBLIN PANDA
Actor
TEMPER PANDA
Actor
LOTUS PANDA
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.