Mustang Panda Linked to Updated FDMTP Backdoor in Asia-Pacific Espionage Campaign

2026-05-14T20:52:16Zfed71fee31513f5aaa8f52de8a93d2c6b982bcfdfcd76adc4ebcc9763a815773
Avada BuilderBeagle backdoorCISA guidance','G7 SBOMs for AI','ICO AI guidance','Microsoft P&Canvas breachClickFixCloudZ RATDirty FragDonutLoaderFDMTP backdoorFragnesia kernelLinux LPEMini Shai‑HuludMustang PandaPheno pluginPyPIPySoxyShinyHuntersTanStackThe Open Network (TON)TrickMoVidar infostealerWordPressZara breachfake Claudesupply chain

What happened

Infosecurity Magazine roundup (May 11–14, 2026): multiple active espionage and supply‑chain campaigns and several high‑impact vulnerabilities were reported. Mustang Panda resurfaced with an updated FDMTP backdoor targeting Asia‑Pacific/Japan networks; supply‑chain attacks and trojanized software were observed across ecosystems (Mini Shai‑Hulud impacting TanStack/PyPI, trojanized Daemon Tools, fake Claude/Beagle/DonutLoader distribution). Linux kernel local privilege escalation flaws (Fragnesia / “Dirty Frag” chains) and widespread WordPress Avada Builder file‑read/SQLi issues put many systems‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
infosecurity_magazine
Record identifier
fed71fee31513f5aaa8f52de8a93d2c6b982bcfdfcd76adc4ebcc9763a815773
Enrichment time
2026-05-14T20:52:16Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.