Alerts
Events
DCR
Explore Cyware Products
Alerts
Events
DCR
Go to listing page
Mustang Panda: PAKLOG, CorKLOG, and SplatCloak
Threat Actors
April 16, 2025
Zscaler
Mustang Panda, a China-linked APT group, has expanded its malware arsenal with PAKLOG and CorKLOG and an EDR evasion driver named SplatCloak. The malware is delivered via RAR archives containing legitimate signed binaries and malicious DLLs.
Read More
Mustang Panda
SplatCloak
PAKLOG
CorKLOG
Publisher
Previous
LabHost: A defunct but potent phishing service
Threat Intel & Info Sharing
Next
CVE-2025-24054: Actively Exploited NTLM Hash Disclosure ...
Malware and Vulnerabilities