Mustang Panda Uses Signed Kernel Driver to Install TONESHELL Backdoor
Mustang Panda deployed TONESHELL via a signed kernel-mode rootkit, targeting Asian government networks and evading security tools.
More info
