Introduction
ENVOY PANDA is a βChina-nexusβ actor, active since 2011, that has mainly targeted diplomatic entities associated with African and Middle Eastern governments.[CrowdStrike 2025 Global Threat Report][Envoy Panda Profile]
Activities and Tactics
Country of Origin: π¨π³ China
Notable Campaigns
Information pending cataloguing.
Tactics, Techniques, and Procedures (TTPs)
Information pending cataloguing.
Notable Indicators of Compromise (IOCs)
No curated IOCs are currently published for this actor. This section will be updated when stable, attributable indicators are available.
Malware and Tools
- China Chopper:
Attribution and Evidence
Country of Origin: China Additional attribution information pending cataloguing.
References
[1] [CrowdStrike 2025 Global Threat Report [2] [Envoy Panda Profile