We provide a technical overview of the previously unseen PlugX variant THOR, indicators of compromise and a new tool for payload decryption.
The post THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG Group appeared first on Unit42.
Article Link: https://unit42.paloaltonetworks.com/thor-plugx-variant/