Camaro Dragon is an Advanced Persistent Threat (APT) group engaged in covert cyber-espionage campaigns.
Camaro Dragon is an Advanced Persistent Threat (APT) group engaged in covert cyber-espionage campaigns. The latest reporting highlights kernel-level intrusion techniques—specifically Mustang Panda deploying ToneShell via a signed kernel—demonstrating high-skill capability, stealth, and persistence that align with Camaro Dragon's threat profile.
A Chinese advanced persistent threat group, Camaro Dragon, launched a cyberespionage campaign against entities in Qatar on March 2, 2026, following the outbreak of new hostilities in the Middle East. The group utilized…
In mid-2025, the Chinese APT group Mustang Panda launched cyber-espionage attacks using a signed kernel-mode rootkit to deploy the ToneShell backdoor. The attacks targeted government organizations in Southeast and East…