FBI removes Chinese-backed malware from thousands of U.S. computers

Posted 1/23/25

The Justice Department and FBI have removed malicious software from more than 4,200 infected U.S. computers in a sweeping international operation targeting Chinese state-sponsored hackers, officials announced last Tuesday. 

The court-authorized operation eliminated "PlugX" malware that had been used by a Chinese government-backed hacking group known as "Mustang Panda" to infiltrate and steal information from computer systems worldwide since 2014.

According to court documents, unsealed in Philadelphia, the Chinese government paid the Mustang Panda group to develop this specific …

This item is available in full to subscribers.

You can also purchase this individual item for $1.50

Please log in to continue

Log in

FBI removes Chinese-backed malware from thousands of U.S. computers

Posted

The Justice Department and FBI have removed malicious software from more than 4,200 infected U.S. computers in a sweeping international operation targeting Chinese state-sponsored hackers, officials announced last Tuesday. 

The court-authorized operation eliminated "PlugX" malware that had been used by a Chinese government-backed hacking group known as "Mustang Panda" to infiltrate and steal information from computer systems worldwide since 2014.

According to court documents, unsealed in Philadelphia, the Chinese government paid the Mustang Panda group to develop this specific version of PlugX. The operation, led by French law enforcement and cybersecurity firm Sekoia.io, began in August 2024. The U.S. portion of the operation concluded on January 3, 2025.

The FBI is notifying affected U.S. computer owners through their internet service providers. Computer owners who suspect compromise are encouraged to report it through the FBI's Internet Crime Complaint Center or contact their local FBI field office.