Phantom Taurus

Threat Actor updated 23 days ago (2025-11-21T02:26:51.700Z)
Download STIX
Preview STIX
Not enough context has been learned about Phantom Taurus for a description yet. However we're tracking it as a Threat Actor profile. Threat Actor: A threat actor, also commonly referred to as a threat group, adversary, or hacking team, is a human entity that is behind the execution of actions with malicious intent. It could be a single person, a private company, or part of a government entity. The cybersecurity industry comes up with some pretty crazy naming conventions, and there are very little standards.
Description last updated:
What's your take? (Question 1 of 5)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Malware
Net
Tool
Apt
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Associated Malware
To see the evidence that has resulted in these malware associations, create a free account
Alias DescriptionAssociation TypeVotes
The Stately Taurus Malware is associated with Phantom Taurus. Stately Taurus, also known as Mustang Panda, Bronze President, Camaro Dragon, Earth Preta, Luminous Moth, and Red Delta, is a sophisticated malware that has been used in cyber-espionage campaigns primarily targeting government entities in Southeast Asia. It is believed to be associated with China's Unspecified
2
The Iron Taurus Malware is associated with Phantom Taurus. Iron Taurus, also known as APT27, is a malware that has been linked to various cyber-espionage activities. This malicious software is designed to infiltrate systems surreptitiously through suspicious downloads, emails, or websites, and once inside, it can steal personal information, disrupt operatioUnspecified
2
The malware Starchy Taurus is associated with Phantom Taurus. Unspecified
2
Associated Threat Actors
To see the evidence that has resulted in these threatActor associations, create a free account
Alias DescriptionAssociation TypeVotes
The APT27 Threat Actor is associated with Phantom Taurus. APT27, also known as Emissary Panda or Iron Taurus, is a threat actor suspected to be associated with China and has been involved in cyber operations primarily aimed at intellectual property theft. The group targets organizations globally, including those in North and South America, Europe, and the Unspecified
2
The Mustang Panda Threat Actor is associated with Phantom Taurus. Mustang Panda, a China-aligned Advanced Persistent Threat (APT) group, has been identified as a significant cyber threat actor involved in a series of malicious activities. Notably, Mustang Panda was found to be associated with the BRONZE PRESIDENT phishing lure, which delivered PlugX and used modifUnspecified
2
Source Document References
Information about the Phantom Taurus Threat Actor was read from the documents corpus below. This display is limited to 20 results, create a free account to see more