Loading...
Loading...
Browse all stories on DeepNewz
VisitWhich will be the most active state-backed hacking group in 2025 according to US cybersecurity agencies?
Mustang Panda • 25%
Twill Typhoon • 25%
Another Known Group • 25%
Newly Identified Group • 25%
Reports from US cybersecurity agencies or major cybersecurity firms
FBI Deletes PlugX Malware From Over 4,200 US Computers, Targeting Mustang Panda and Twill Typhoon
Jan 14, 2025, 04:38 PM
The U.S. Department of Justice and the FBI, in collaboration with French law enforcement and cybersecurity firm Sekoia, have successfully deleted the PlugX malware from approximately 4,258 computers across the United States. This operation targeted a version of the malware deployed by the China-backed hacking groups known as Mustang Panda and Twill Typhoon. The malware, which has been used since at least 2014 and first observed in 2012, was designed to infect, control, and steal information from victim computers using a wormable component often spread through USB ports. The FBI obtained nine warrants in the Eastern District of Pennsylvania to authorize the deletion of the malware, with the operation concluding on January 3, 2025. At least 45,000 IP addresses in the U.S. had contacted the command-and-control server since September 2023. The PlugX malware has been used in espionage campaigns targeting U.S. victims, European and Asian governments and businesses, and Chinese dissident groups.
View original story
China • 25%
North Korea • 25%
Other • 25%
Russia • 25%
China • 25%
North Korea • 25%
Other • 25%
Russia • 25%
China • 25%
Russia • 25%
Iran • 25%
Other • 25%
Other • 25%
United States • 25%
South Korea • 25%
Japan • 25%
United States • 25%
Other • 25%
Japan • 25%
South Korea • 25%
China • 25%
Iran • 25%
North Korea • 25%
Russia • 25%
Healthcare • 25%
Technology • 25%
Financial • 25%
Government • 25%
Financial Services • 25%
Telecommunications • 25%
Government • 25%
Healthcare • 25%
United Kingdom • 25%
Other • 25%
United States • 25%
Germany • 25%
Department of Defense • 25%
Other • 25%
Department of State • 25%
Department of Homeland Security • 25%
Australia • 25%
South Korea • 25%
Japan • 25%
United States • 25%
Yes • 50%
No • 50%
No • 50%
Yes • 50%
Supply Chain Attack • 25%
Zero-Day Exploit • 25%
Ransomware • 25%
Phishing • 25%