#PlugX
Chinese APT Group Deploys Signed Kernel Rootkit to Hide ‘CoolClient’ Backdoor on Government Networks
Researchers have exposed a HoneyMyte campaign that pairs the PlugX loader with a new backdoor called CoolClient, concealed by a digitally signed kernel rootkit driver. The malware has...
The FBI and DOJ have successfully removed PlugX malware from thousands of U.S. computers
In a cyber operation, the U.S. Department of Justice (DOJ) and the FBI have successfully removed the PlugX malware from over 4,200 computers across the United States. This...