From f4dca402f265564fc2654b2722c95312d749b88b Mon Sep 17 00:00:00 2001 From: S3N4T0R <121706460+S3N4T0R-0X0@users.noreply.github.com> Date: Wed, 11 Sep 2024 15:10:55 -0400 Subject: [PATCH] Update README.md --- Chinese APT/Mustang Panda/README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Chinese APT/Mustang Panda/README.md b/Chinese APT/Mustang Panda/README.md index 6facf37..4cee0b1 100644 --- a/Chinese APT/Mustang Panda/README.md +++ b/Chinese APT/Mustang Panda/README.md @@ -64,7 +64,7 @@ Now I have control over the target machine through my browser in Kali Linux. _______________________________________________________________________________________________________________________ -## The second stage (implanting technique) +## The second stage (ToneShell Backdoor) Upon logging in, the attacker is directed to a Visual Studio Code web environment linked to the compromised machine, where they are granted the ability to run commands, execute scripts, and create new files on the infected system.