Skip to content

Evasive Panda APT Using AitM Attack and DNS Poisoning to Deliver Malware

Cybersecuritynews •Tushar Subhra Dutta • December 24, 2025

The Evasive Panda APT group, also known as Bronze Highland, Daggerfly, and StormBamboo, has been running targeted campaigns since November 2022, using advanced techniques to deliver the MgBot malware. The group employs adversary-in-the-middle attacks combined with DNS poisoning to compromise specific victims across multiple industries. Recent findings show that these operations continued until November 2024, […]

Extracted Entities