Dettaglio notizia

Data 13/07/2026
Titolo Mustang Panda Deploys SolidPDFCreator Stage-1 Backdoor Against India Targets
Contesto Researchers identified a Windows DLL backdoor dubbed SolidPDFCreator and attributed it to the China-linked threat group Mustang Panda, describing the malware as a stage-1 backdoor used in a campaign targeting entities in India. The sample was tied to "Target India – Campaign 3" and documented as an early-access implant intended to establish an initial foothold on compromised systems.

Available reporting describes the malware as a DLL-based payload and provides core triage details including file type, size, hashes, compiler characteristics, and binary section information. The publication of these indicators gives defenders material to hunt for related activity and assess whether Mustang Panda infrastructure or tooling associated with SolidPDFCreator is present in their Windows environments.
Fonte https://mallory.ai/stories/019f5b97-b731-757f-9232-4d37594e27e2
Discussione? Parliamone sul Forum