Uptime Hamster: 21d 12h 2mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
Logo del actor de amenaza Liminal Panda

Liminal Panda

0 incidentes 0 paises 0 sectores apt CN Ultimo: -
Ver en IntelTracker → APTTrail →
Liminal Panda is a state-sponsored China-nexus cyber-espionage group that first emerged as early as 2019, specializing in intelligence collection against telecommunications providers, technology companies, and critical infrastructure globally. The group distinguishes itself through its in-depth understanding of telecommunications networks and protocols, developing custom tools like SIGTRANslator and CordScan to exploit these systems for covert access, command and control, and data exfiltration. Initially identified from activity previously attributed to the LightBasin cluster, Liminal Panda was later explicitly distinguished by CrowdStrike in 2021 as a separate entity due to distinct operational patterns. Their primary motivation is strategic technology acquisition and defense intelligence collection, directly supporting China's industrial ambitions and military modernization by targeting sensitive subscriber data, call records, and intellectual property.

Actores similares

anchor-pandaactor · 1aquatic-pandaactor · 1big-pandaactor · 1electric-pandaactor · 1eloquent-pandaactor · 1emissary-pandaactor · 1foxy-pandaactor · 1goblin-pandaactor · 1gibberish-pandaactor · 1hurricane-pandaactor · 1
Tecnicas MITRE
T1110.001 - Password Guessing, T1016 - System Network Configuration Discovery, T1556.003 - Pluggable Authentication Modules, T1070.001 - Clear Windows Event Logs, T1021.004 - SSH, T1059.004 - Unix Shell
CVEs relacionadas
CVE-2025-49706, CVE-2025-49704, CVE-2025-27423, CVE-2025-27218, CVE-2025-25015, CVE-2025-24494
Tipo
apt
Pais origen
CN
Motivacion
-
Impacto
28
Actualizado
Thu, 21 No

Sectores objetivo (OSINT)

TelecommunicationsManagement Consulting ServicesOffices of Lawyers