ThreatCluster

Evasive Panda APT Delivers MgBot Malware via AitM and DNS Poisoning

First seen 24 Dec 2025, 19:09 UTC GbhackersCybersecuritynewsCyberpress 81% similarity 44

Article Content

Browse articles
ThreatCluster

The Evasive Panda APT group, also known as Bronze Highland, has been conducting targeted campaigns since November 2022, utilizing adversary-in-the-middle (AitM) attacks and DNS poisoning to deliver the MgBot malware. These operations have affected multiple industries and continued until November 2024.

ThreatCluster AI

Community

Browse all →