THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG Group

We provide a technical overview of the previously unseen PlugX variant THOR, indicators of compromise and a new tool for payload decryption.

The post THOR: Previously Unseen PlugX Variant Deployed During Microsoft Exchange Server Attacks by PKPLUG Group appeared first on Unit42.

Article Link: https://unit42.paloaltonetworks.com/thor-plugx-variant/