Evasive Panda Compromises ISP to Distribute Malicious Software Updates
(informationsecuritybuzz.com)https://informationsecuritybuzz.com/stormbamboo-malicious-software-updates/The cyber espionage group dubbed Evasive Panda (also known as StormBamboo and previously tracked as StromCloud) compromised an unnamed Internet Service Provider (ISP) in mid-2023 to push malicious software updates to target entities.
This incident marks a significant escalation in the sophistication of the group’s tactics.