News

The popular remote access tool PlugX enjoyed an ascent in popularity in 2014 and is now a go-to malware for attack groups. Existing in some form since 2008, the popular remote access tool PlugX ...
The PlugX malware then ultimately calls out to the command and control (C2) server IP, 45.248.87 [.]162. Researchers said that continued activity by TA416 demonstrates a persistent adversary ...
Since then, their server continues to receive PlugX traffic from 90,000 to 100,000 unique IP addresses every day. Over the span of six months, the researchers counted requests from nearly 2.5 ...
Jan. 14 (UPI) -- Federal authorities announced Tuesday that they have erased Chinese malware from thousands of computers across the United States. The malware, a variant of the PlugX malicious ...
An operation responding to a Black Basta ransomware compromise has revealed the use of a new PlugX malware variant that can automatically infect any attached removable USB media devices. Palo Alto ...
PlugX is a remote access Trojan (RAT) consisting a malicious DLL that can perform a variety of actions on the infected endpoint, including downloading and deploying new modules or plugins.
The PlugX worm, often linked to Mustang Panda, can spread through infected flash drives, making it highly pervasive. After gaining control of a key command-and-control (C2) server in 2023, Sekoia ...
AlienVault researchers have been tracking attacks that use the PlugX RAT since earlier this year. Based on file debug paths found inside the malware, they believe that the relatively new RAT was ...
PlugX is a remote access trojan that has been deployed by multiple Chinese threat actors for a long time. New variants are modified and released according to a malicious campaign's operational needs.
In court records filed in the U.S. District Court for the Eastern District of Pennsylvania, prosecutors allege that the Chinese government paid the Mustang Panda group to develop PlugX ...
News IE exploit distributes PlugX malware, researchers say By Lucian Constantin Sep 19, 2012 5:11 pm PDT ...
Researchers from security vendor AlienVault have identified a variant of a recently discovered Internet Explorer exploit that is used to infect targeted computers with the PlugX remote access ...