Adversary Tradecraft: Emulating Mustang Panda’s Use of MAVInject in Recent Campaigns

Detecting Mustang Panda's Use of MAVinject

In cybersecurity, old tactics rarely die — they just get repackaged. Attackers continue to revive long-standing techniques, dressing them up with minor tweaks to stay effective. Living Off the Land Binaries (LOLBins) are a prime example: legitimate Windows tools repurposed for malicious ends. Despite being around for decades, these methods still work — often because […]