US and international law enforcement agencies have removed the PlugX malware from thousands of computers globally. The operation involved the US Department of Justice, French law enforcement and cybersecurity firm Sekoia.io. The malware network was reportedly operated by a group of hackers sponsored by the Chinese government. The sophisticated PlugX malware allowed hackers full control over an infected machine, enabling them to execute commands remotely and gather critical information.
CISA Adds Apache, Microsoft Bugs to Know Exploited Vulnerabilities Database
The U.S. CISA updated its Known Exploited Vulnerabilities (KEV) Catalog, highlighting several critical vulnerabilities including Apache OFBiz (CVE-2024-45195), Microsoft .NET Framework (CVE-2024-29059), and Paessler PRTG