← Back to all threat actors

Daggerfly

Also known as Evasive Panda, BRONZE HIGHLAND
Tracked as G1034

Daggerfly is a People's Republic of China-linked APT entity active since at least 2012. Daggerfly has targeted individuals, government and NGO entities, and telecommunication companies in Asia and Africa. Daggerfly is associated with exclusive use of MgBot malware and is noted for several potential supply chain infection campaigns.

How we source and review actor profiles
Motivation
nation-state
Status
Active

Activity timeline

A dated ledger of actor-claimed victims, campaigns, indicators, identity mappings, relationships, and CVE links. Each date states what it measures. For extensive leak-site histories, victim entries are limited to the 100 most recent distinct listings.

Cataloged
IdentityAlias: Evasive Panda

Reviewed identity mapping approved on this date.

Cataloged
IdentityAlias: BRONZE HIGHLAND

Reviewed identity mapping approved on this date.

Cataloged
IdentityTracking identifier: G1034

Reviewed identity mapping approved on this date.

Identity and attribution

Exact names and tracking identifiers resolve to this canonical profile. Rebrands, affiliations, and overlapping clusters remain separate confidence-rated relationships.

Name map

DaggerflyCanonical Name
BRONZE HIGHLANDAlias
Evasive PandaAlias
G1034Tracking Id

Loading CVEs, techniques, indicators, malware, victims, and activity...