MUSTANG PANDA x PLUGX - Analysis of the January 2026 sample: a multi-layer execution chain
TL;DR. The malware sample uses the three-file set Avk.exe, Avk.dll, and AVKTray.dat, deployed from an MSI file downloaded by Browser_Updater.exe. The execution chain starts with DLL sideloading throug
bluecyber.hashnode.dev35 min read