Tag

#RAT

9 stories taggedRAT.

A laptop screen displaying a job recruitment email and coding challenge test file, Mac and Linux system environments visible, malicious payload hidden within th
Threat Intelligence

Iranian Hackers Nimbus Manticore Target Mac and Linux With Fake Job Tests

Kaspersky says the state-linked crew is now posing as recruiters and hiding remote-access malware inside coding challenges sent to job hunters.

3 min read
An FTP server welcome screen with disguised command instructions hidden within greeting text, with malicious payloads downloading to a Windows system in the bac
Threat Intelligence

Hackers Hide Malware Instructions in FTP Server Greetings

A quiet trick spotted by SOCRadar uses FTP welcome messages to smuggle commands onto Windows machines, dropping two new remote-control tools called E4del and PINHOLE.

3 min read
Teenager's gaming setup with multiple monitors showing Roblox game interface alongside security warning alerts, malware detection software running, concerned ex
Threat Intelligence

Fake Roblox Cheat Tool Hides Password Stealer and Remote Spy Software

Bitdefender says a months-long campaign is pushing booby-trapped copies of the Xeno script runner to Roblox players, planting malware that steals browser logins, drains crypto wallets and hands attackers full control of the PC.

4 min read
Developer workspace with code editor displaying npm package registry interface, malicious package listings highlighted, security scanning tools running in backg
Threat Intelligence

Fake npm Packages Pose as Alibaba Developer Tools, Drop Remote-Control Malware

Researchers found 18 booby-trapped packages on the npm registry aimed at Chinese-speaking developers, using a classic name-squatting trick to smuggle in a cross-platform remote access trojan.

4 min read
A network map showing 170 server nodes spread globally, each connected to a central spyware toolkit icon, with Android phone symbols at the endpoints representi
Threat Intelligence

Flying Eagle Android Spyware Kit Leaks Onto Telegram, Traced to 170 Servers

Researchers link the free-to-copy surveillance toolkit to a fake Chinese police services app aimed at Android phone users.

3 min read
A developer's IDE with the Joyfill package imported, malicious code highlighted in the dependency tree, a remote-control trojan's command structure revealed in
Threat Intelligence

Booby-trapped @joyfill npm packages hide a remote-control trojan

Two beta versions of the popular Joyfill JavaScript packages were tampered with to plant malware that runs the moment a developer imports them.

4 min read
A cybercrime forum listing page for Dolphin X malware, displaying a scoring algorithm interface that ranks infected machines by financial value and net worth es
Threat Intelligence

Dolphin X: The New Malware That Uses AI to Pick Which Victims to Rob First

A remote access trojan sold on a cybercrime forum claims to score infected machines by their value, so criminals can go after the richest targets first.

4 min read
Illustration: a laptop screen showing a generic software installer window mid-download
Threat Intelligence

Silver Fox's New MODBEACON Trojan Hides Inside Fake Software Installers

The China-linked group is using booby-trapped downloads to plant a Rust-built remote-control tool that talks to its handlers over encrypted channels.

3 min read
Illustration: a cluttered security researcher's desk at night: open laptop showing terminal-
Threat Intelligence

ChocoPoC RAT Hides in Fake GitHub Exploits, Targets Security Researchers

A cluster of trojanized proof-of-concept repositories is pushing a Python-based remote access trojan to the very people who go looking for them.

3 min read
© 2026 Threat Vectr