Symantec researchers observed Chinese state-sponsored threat actors running ransomware against an Asian software and services ...
RA World ransomware used PlugX malware in Nov 2024, hinting at a lone hacker monetizing Chinese espionage tools.
Crucially, Symantec’s threat researchers observed the use of a custom version of the PlugX backdoor previously deployed by a ...
The attacker deployed a variant of the PlugX cyberespionage toolset previously associated with Chinese APT groups against a ...
A China-based threat actor, tracked as Emperor Dragonfly and commonly associated with cybercriminal endeavors, has been ...
A toolset associated with China-linked espionage intrusions was employed in a ransomware attack, likely by a single ...