Mustang Panda Linked to Updated FDMTP Backdoor in Asia-Pacific Espionage Campaign
2026-05-14T20:52:16Z•fed71fee31513f5aaa8f52de8a93d2c6b982bcfdfcd76adc4ebcc9763a815773
Avada BuilderBeagle backdoorCISA guidance','G7 SBOMs for AI','ICO AI guidance','Microsoft P&Canvas breachClickFixCloudZ RATDirty FragDonutLoaderFDMTP backdoorFragnesia kernelLinux LPEMini Shai‑HuludMustang PandaPheno pluginPyPIPySoxyShinyHuntersTanStackThe Open Network (TON)TrickMoVidar infostealerWordPressZara breachfake Claudesupply chain
What happened
Infosecurity Magazine roundup (May 11–14, 2026): multiple active espionage and supply‑chain campaigns and several high‑impact vulnerabilities were reported. Mustang Panda resurfaced with an updated FDMTP backdoor targeting Asia‑Pacific/Japan networks; supply‑chain attacks and trojanized software were observed across ecosystems (Mini Shai‑Hulud impacting TanStack/PyPI, trojanized Daemon Tools, fake Claude/Beagle/DonutLoader distribution). Linux kernel local privilege escalation flaws (Fragnesia / “Dirty Frag” chains) and widespread WordPress Avada Builder file‑read/SQLi issues put many systems‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- fed71fee31513f5aaa8f52de8a93d2c6b982bcfdfcd76adc4ebcc9763a815773
- Enrichment time
- 2026-05-14T20:52:16Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.