threat-intel
Mustang Panda Adds Signed Windows Rootkit to CoolClient Backdoor for Stealth
The HoneyMyte threat actor (aka Mustang Panda) has updated its CoolClient backdoor with a new, signed Windows kernel-mode rootkit, significantly enhancing its stealth capabilities. This rootkit, implemented through a driā¦
High
