The China-linked Mustang Panda APT has been using a kernel-mode rootkit in attacks leading to ToneShell backdoor deployments.
On the efficiency front, the Land Cruiser doesn't quite fare too well, but this is to be expected from a fully-fledged 4x4 ...