logo

DOJ deletes China-linked PlugX malware off more than 4,200 US computers

ID: e71d466f-9079-5aae-8af5-5f6b8101fb2a

STIX ID: report--e71d466f-9079-5aae-8af5-5f6b8101fb2a

Feed Name: The Record from Recorded Future News

Threat Score
90/100

Date Published: 2025-01-14

Date Updated: 2026-05-01

...
...

The report describes a DOJ/FBI court-authorized, international effort—assisted by French authorities and Sekoia—to identify and remove the PlugX malware, attributed to Chinese state-backed Mustang Panda, from thousands of infected machines (≈4,258 in the U.S. and tens of thousands globally). It highlights PlugX’s USB-worm propagation, its long-term espionage use, the legal warrants obtained for remediation, and Sekoia’s technical method for remote disinfection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.