Warp Panda is a apt_group tracked across 10 threat clusters and 20 intelligence report mentions on ThreatCluster. First observed December 4, 2025; most recent activity June 9, 2026.
A Chinese threat actor known as VerdantBamboo compromised a company's network through a managed service provider (MSP) over 18 months. The initial breach involved a Linux-based Egnyte Storage Sync appliance, which was…
Recent research from Darktrace reveals the evolution of Chinese-nexus cyber operations over the past two decades, highlighting a shift from high-volume attacks to more strategic, identity-centric intrusions. This change…
Google's Threat Intelligence Group tracked 90 zero-day vulnerabilities exploited in 2025, a rise from 78 in 2024. Less than half of these vulnerabilities were attributed to specific threat actors, with spyware vendors…
A critical vulnerability in VMware vCenter Server, tracked as CVE-2024-37079, is being actively exploited more than a year after Broadcom issued a patch. This out-of-bounds write flaw in the DCERPC protocol has a CVSS…
Chinese state-sponsored hackers have maintained long-term access to critical US networks, utilizing Brickstorm malware for data theft and infiltration. The campaign, which has affected at least eight government services…
Chinese authorities have instructed domestic firms to cease using cybersecurity software from over a dozen U.S. and Israeli companies due to national security concerns. Affected vendors include VMware, Palo Alto…
CISA, in collaboration with the NSA and Canada's Cyber Security Centre, has issued a warning about Chinese hackers using BrickStorm malware to backdoor VMware vSphere servers. The attacks primarily affect government and…
Chinese state-sponsored hackers are utilizing a new malware known as BRICKSTORM, a stealthy Go-based backdoor, targeting VMware systems for long-term espionage in government and IT networks. Additionally, the threat…
The China-linked threat actor Warp Panda has been targeting US organizations in the legal, manufacturing, and technology sectors using advanced malware. The malware variants identified include BrickStorm, Junction, and…
CrowdStrike has reported on WARP PANDA, a China-linked cyber-espionage group targeting North American legal, technology, and manufacturing firms throughout 2025. The group specializes in covert operations within…