HackerFeeds

CyberSecurity News

Mustang Panda Uses Zoho WorkDrive as Command Channel in Indian Government Attacks

The Hacker News
· June 29, 2026

AI summary

Mustang Panda, a China-aligned espionage group, is conducting two campaigns targeting the Indian government and hydropower entities. The group is utilizing new malware and leveraging a legitimate cloud service as a command channel. Researchers at Acronis Threat Research Unit have discovered active compromises within Indian government networks, including systems used by senior administrative staff. The unit collaborated with unspecified entities to uncover these compromises. Mustang Panda's use of a cloud service as a command channel involves Zoho WorkDrive. The attacks indicate the group's ongoing efforts to target Indian government and related entities.

Countries in focus

Read the full article at The Hacker Newsthehackernews.com/2026/06/mustang-panda-uses-zoho-workdrive-as.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.