Two Windows vulnerabilities, one a 0-day, are under active exploitation
A long-running Windows Shortcut zero-day (CVE-2025-9491) and another critical flaw are actively exploited worldwide to deploy PlugX and other post-exploitation payloads.
China-Linked PlugX and Bookworm Malware Attacks Target Asian Telecom and ASEAN Networks
A new PlugX malware variant targets Central and South Asian telecommunications and manufacturing, combining RainyDay and Turian features and indicating shared tools or actor overlap.