F5 released research revealing the Zeus banking Trojan is back with its latest spin-off, Panda. The malware is in full force with three currently active campaigns that extend its targets beyond banking to new industries like cryptocurrency and social media, as well as to organizations worldwide.
Key findings from the report include:
- Panda is still primarily focused on financial services organizations, but the industries of its targets is growing with each new campaign
- Panda began targeting cryptocurrency sites in February 2018
- Panda is currently targeting Facebook and Twitter in all three campaigns active in May
- There are different C&Cs for each campaign, three of which are connected through a known threat actor network in Russia, the fourth is hosted in China.