⤷ Title: RedDelta Leverages PlugX Backdoor in State-Sponsored Espionage Campaigns
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 13 Jan 2025 01:46:07 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BlueAlpha #malware #Microsoft Azure #PlugX backdoor #PlugX backdoor malware #RedDelta #search order hijacking
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 13 Jan 2025 01:46:07 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BlueAlpha #malware #Microsoft Azure #PlugX backdoor #PlugX backdoor malware #RedDelta #search order hijacking
Cybersecurity News
RedDelta Leverages PlugX Backdoor in State-Sponsored Espionage Campaigns
Uncover the details of RedDelta: A sophisticated cyber-espionage group targeting political and government entities in Asia.
⤷ Title: “PlugX” Malware Deleted from Thousands of Computers in Global Operation
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 15 Jan 2025 02:28:05 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #Chrome 132 #CVE_2025_0434 #CVE_2025_0435 #CVE_2025_0437 #Linux #Mac #Mustang Panda #PlugX malware #Twill Typhoon #windows
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 15 Jan 2025 02:28:05 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #Chrome 132 #CVE_2025_0434 #CVE_2025_0435 #CVE_2025_0437 #Linux #Mac #Mustang Panda #PlugX malware #Twill Typhoon #windows
Daily CyberSecurity
"PlugX" Malware Deleted from Thousands of Computers in Global Operation
U.S. authorities successfully neutralize Chinese state-sponsored cyber espionage threat by deleting PlugX malware.
⤷ Title: Cisco Uncovers New PlugX Backdoor Linked to Chinese APTs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 24 Sep 2025 02:06:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #backdoor #BackdoorDiplomacy #Cisco Talos #cyber_espionage #cybersecurity #Naikon #PlugX
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 24 Sep 2025 02:06:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #backdoor #BackdoorDiplomacy #Cisco Talos #cyber_espionage #cybersecurity #Naikon #PlugX
Daily CyberSecurity
Cisco Uncovers New PlugX Backdoor Linked to Chinese APTs
Cisco Talos uncovers a long-running espionage campaign using a new PlugX backdoor. The malware shows strong links to Chinese APT groups Naikon and BackdoorDiplomacy.
⤷ Title: Chinese APT Launches Spearphishing Campaign, Using Fake Cloudflare Lure to Deliver PlugX Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 07 Oct 2025 00:11:22 +0000
════════════════════════
⌗ Tags: #Cyber Security #Aviation Sector #Chinese APT #cloudflare #DLL Sideloading #Espionage #PlugX #Spearphishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 07 Oct 2025 00:11:22 +0000
════════════════════════
⌗ Tags: #Cyber Security #Aviation Sector #Chinese APT #cloudflare #DLL Sideloading #Espionage #PlugX #Spearphishing
Daily CyberSecurity
Chinese APT Launches Spearphishing Campaign, Using Fake Cloudflare Lure to Deliver PlugX Malware
A Chinese APT used fake Cloudflare verification pages and malicious LNK files to inject PlugX via DLL sideloading into a Serbian aviation agency, aiming for long-term espionage.
⤷ Title: Chinese APT UNC6384 Pivots to Europe, Exploits Windows LNK Flaw to Deploy PlugX via Canon DLL Sideloading
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 03 Nov 2025 00:29:48 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability Report #Chinese APT #DLL Sideloading #Espionage #European Diplomacy #LNK Exploit #PlugX #UNC6384 #ZDI_CAN_25373
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 03 Nov 2025 00:29:48 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability Report #Chinese APT #DLL Sideloading #Espionage #European Diplomacy #LNK Exploit #PlugX #UNC6384 #ZDI_CAN_25373
Daily CyberSecurity
Chinese APT UNC6384 Pivots to Europe, Exploits Windows LNK Flaw to Deploy PlugX via Canon DLL Sideloading
Researchers at Arctic Wolf Labs have uncovered an extensive cyber espionage campaign by UNC6384, a Chinese-affiliated threat actor, targeting European diplomatic entities across Hungary, Belgium, …
⤷ Title: Diplomatic Spies: Chinese APT UNC6384 Targets NATO Hosts with PlugX Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 03 Nov 2025 03:36:49 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Espionage #Diplomacy #European Union #Mustang Panda #NATO #PlugX #Spear Phishing #UNC6384
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 03 Nov 2025 03:36:49 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Espionage #Diplomacy #European Union #Mustang Panda #NATO #PlugX #Spear Phishing #UNC6384
Penetration Testing Tools
Diplomatic Spies: Chinese APT UNC6384 Targets NATO Hosts with PlugX Malware
Chinese APT UNC6384 targeted Hungarian/Belgian diplomats with PlugX malware, exploiting a Windows flaw via spear phishing themed around NATO & EU meetings.
⤷ Title: Microsoft Finally Patches LNK Flaw (CVE-2025-9491) Exploited by Spies Since 2017
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 03:49:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #0patch #CVE_2025_9491 #Espionage #LNK Flaw #Microsoft #Patch Tuesday #PlugX #windows #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 03:49:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #0patch #CVE_2025_9491 #Espionage #LNK Flaw #Microsoft #Patch Tuesday #PlugX #windows #zero_day
Penetration Testing Tools
Microsoft Finally Patches LNK Flaw (CVE-2025-9491) Exploited by Spies Since 2017
Microsoft has quietly patched a long-standing flaw in Windows that had been exploited in real-world attacks for several
⤷ Title: PlugX Evolves: New “Meeting Invitation” Phishing Campaign Leverages Trusted Security Software
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 00:00:22 +0000
════════════════════════
⌗ Tags: #Malware #APT41 #cyber_espionage #DLL side_loading #G DATA #infosec #Lab52 #Malware Analysis #Mustang Panda #phishing #PlugX RAT #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 00:00:22 +0000
════════════════════════
⌗ Tags: #Malware #APT41 #cyber_espionage #DLL side_loading #G DATA #infosec #Lab52 #Malware Analysis #Mustang Panda #phishing #PlugX RAT #threat intelligence
Daily CyberSecurity
PlugX Evolves: New "Meeting Invitation" Phishing Campaign Leverages Trusted Security Software
LAB52 exposes a new China-aligned espionage campaign using fake meeting invitations and G DATA antivirus components to stealthily deploy the PlugX RAT.
⤷ Title: Shadows in the Browser: The UNC6384 Syndicate Unmasks a New PlugX Variant “Arp”
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 06:59:16 +0000
════════════════════════
⌗ Tags: #Malware #Cyberespionage #diplomatic missions #DLL Sideloading #G DATA antivirus #Mustang Panda #PlugX malware #RC4 encryption #Southeast Asia #Tech News 2026 #UNC6384
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 06:59:16 +0000
════════════════════════
⌗ Tags: #Malware #Cyberespionage #diplomatic missions #DLL Sideloading #G DATA antivirus #Mustang Panda #PlugX malware #RC4 encryption #Southeast Asia #Tech News 2026 #UNC6384
Penetration Testing Tools
Shadows in the Browser: The UNC6384 Syndicate Unmasks a New PlugX Variant "Arp"
In January 2026, cybersecurity experts at the Japanese firm IIJ intercepted a novel iteration of the PlugX malware,
⤷ Title: Unmasking the Shadows: A Global Hunt for PlugX Staging Infrastructure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Mar 2026 03:38:27 +0000
════════════════════════
⌗ Tags: #Malware #C2 Procurement #Cloudflare Evasion #cybersecurity #Expired Domains #infosec #Mustang Panda #PlugX #RedDelta #threat intelligence #UNC6384
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Mar 2026 03:38:27 +0000
════════════════════════
⌗ Tags: #Malware #C2 Procurement #Cloudflare Evasion #cybersecurity #Expired Domains #infosec #Mustang Panda #PlugX #RedDelta #threat intelligence #UNC6384
Daily CyberSecurity
Unmasking the Shadows: A Global Hunt for PlugX Staging Infrastructure
Researcher @goyaramen reveals how PRC threat actors like Mustang Panda use expired domains and Cloudflare to mask their PlugX C2 infrastructure.
⤷ Title: The Evoxt Labyrinth: Unmasking the New Subterranean Infrastructure of China’s PlugX Syndicates
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 06 Mar 2026 06:55:16 +0000
════════════════════════
⌗ Tags: #Malware #C2 Infrastructure #Cyberespionage #DLL Sideloading #Evoxt Enterprise #Mustang Panda #PlugX #RedDelta #SOGU.SEC #STATICPLUGIN #Tech News 2026 #threat intelligence #UNC6384
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 06 Mar 2026 06:55:16 +0000
════════════════════════
⌗ Tags: #Malware #C2 Infrastructure #Cyberespionage #DLL Sideloading #Evoxt Enterprise #Mustang Panda #PlugX #RedDelta #SOGU.SEC #STATICPLUGIN #Tech News 2026 #threat intelligence #UNC6384
⤷ Title: Exploiting the Crisis: Chinese APTs Weaponize Middle East Tensions to Target Qatar with PlugX
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 07:06:40 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Camaro Dragon #Chinese APT #Cobalt Strike #Cyberespionage #DLL hijacking #Malware Analysis #Middle East #PlugX #Qatar #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 07:06:40 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Camaro Dragon #Chinese APT #Cobalt Strike #Cyberespionage #DLL hijacking #Malware Analysis #Middle East #PlugX #Qatar #threat intelligence
Daily CyberSecurity
Exploiting the Crisis: Chinese APTs Weaponize Middle East Tensions to Target Qatar with PlugX
Chinese APTs like Camaro Dragon are targeting Qatar with PlugX malware and Cobalt Strike, weaponizing Middle East tensions for cyberespionage.