Skip to content
KitploitKITPLOIT
ツールブログ
提出
ツールブログ
提出

ハッキング、侵入テスト、サイバーセキュリティツールをあなたのセキュリティアーセナルに!

Kitploitはハッキング、サイバーセキュリティ、ペネトレーションテストのツールディレクトリです。最新のプロジェクトアップデートを見つけて、脆弱性の発見、システム分析、テストの自動化、セキュリティの強化を行いましょう。

··フィード·お問い合わせ·プライバシー·© 2026 Kitploit

ツールディレクトリ

カテゴリ

すべてのカテゴリを見る
Loading categories
awesome-rat — RATとC&Cリソース。250以上のオープンソースプロジェクト、1200以上のRAT/C&Cブログ/動画。 | Kitploit
ツール/GitHubGitHub/alphaseclab/awesome-rat
ポストエクスプロイトマルウェア分析ペネトレーションテストコマンド&コントロール論文と研究学習と教育レッドチーミング厳選リソースリモートアクセスツール
GitHubalphaseclab/awesome-rat

awesome-rat

RATとC&Cリソース。250以上のオープンソースプロジェクト、1200以上のRAT/C&Cブログ/動画。

2.2k4776年前Kitploit レビュー済み

人気

すべて見る →

コミュニティで最も使われているツールを見つけましょう。

すべてのツールを探索

ツールコレクションを閲覧

すべてのツールを見る →
共有
リポジトリを見る

すべての収集プロジェクト

RAT

  • 250+ オープンソース遠隔操作/C&Cツール、1200+ RAT分析レポート\C&C関連記事など。
  • English Version

目次

  • オープンソースツール
    • pupy -> (1)ツール (6)記事
    • Covenant -> (3)ツール (18)記事
    • Slackor -> (1)ツール (3)記事
    • QuasarRAT -> (1)ツール (9)記事
    • EvilOSX -> (1)ツール (9)記事
    • Merlin -> (1)ツール (3)記事
  • 商用ソフトウェア
    • Team Viewer -> (7)ツール (34)記事
  • マルウェア(一部)
    • Gh0st -> (5)ツール (23)記事
    • NanoCore -> (1)ツール (32)記事
    • NjRat -> (4)ツール (20)記事
    • Revenge RAT -> (1)ツール (9)記事
    • PlugX -> (1)ツール (40)記事
    • (25) RemcosRAT
    • (3) L0rdixRAT
    • (1) LodaRAT
    • (9) GulfRAT
    • (14) NetWireRAT
    • (1) JhoneRAT
    • (2) Dacls
    • (1) BlackRemote
    • (17) Orcus
    • (1) NukeSped
    • (21) DarkComet
    • (1) WarZone RAT
    • (16) BlackShades
    • (1) DenesRAT
    • (4) WSH RAT
    • (2) Qrypter RAT
    • (20) Adwind
    • (1) CannibalRAT
    • (3) jRAT
    • (5) jsRAT
    • (4) CrossRat
    • (1) ArmaRat
    • (6) RokRAT
  • 公開サービスの利用
    • Telegram -> (3)ツール (2)記事
    • Twitter -> (2)ツール (6)記事
    • GMail -> (3)ツール (8)記事
    • Github -> (1)ツール (5)記事
    • DropBox -> (1)ツール (3)記事
    • ブロックチェーン -> (2)ツール (1)記事
    • その他 -> (15)ツール (5)記事
  • 通信プロトコル
    • DNSプロトコル
      • (9) ツール
      • (18) 記事
      • Domain Generation Algorithm(DGA) -> (14)ツール (42)記事
    • ICMP -> (5)記事
    • WebSocket -> (2)ツール (5)記事
  • C&C
    • Cobalt Strike -> (14)ツール (8)記事
    • ツール
      • (64) 新規追加
    • 記事
      • (258) 新規追加
  • 遠隔操作
    • ツール
      • (9) Android
      • (5) Linux
      • (17) Windows
      • (4) Apple
      • (90) 新規追加
    • 記事

オープンソースツール


pupy

ツール

  • [5265星][1m] [Py] n1nj4sec/pupy Pythonで記述された遠隔操作、後侵入ツール、クロスプラットフォーム(Windows, Linux, OSX, Android)

記事

  • 2020.01 [TheCyberWire] PupyRAT is back. So is the Konni Group. Twitter storm over claims that MBS hacked Jeff Bezos....
  • 2019.03 [hackingarticles] Command & Control Tool: Pupy
  • 2017.11 [chokepoint] Pupy as a Metasploit Payload
  • 2017.10 [boredhackerblog] Pupy shell over Tor
  • 2017.02 [n0where] Open Source Cross Platform RAT: Pupy
  • 2015.10 [hackingarticles] Hack Remote PC using Pupy – Remote Administration Tool

Covenant

ツール

  • [1147星][6d] [C#] cobbr/covenant Covenant is a collaborative .NET C2 framework for red teamers.
  • [95星][9d] [C#] cobbr/elite Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack surface of .NET, make the use of offensive .NET tradecraft easier, and serve as a collaborative command and control platform for red teamers.
  • [31星][4m] [C#] cobbr/c2bridge C2Bridges allow developers to create new custom communication protocols and quickly utilize them within Covenant.

記事

  • 2020.01 [csis] Embedding external DLLs into Covenant Tasks
  • 2020.01 [hakin9] Covenant the .NET based C2 on Kali Linux | by Dan Dieterle
  • 2019.12 [cyberarms] Covenant the .NET based C2 on Kali Linux
  • 2019.12 [rastamouse] Covenant Tasks 101
  • 2019.12 [rsa] Using RSA NetWitness to Detect C&C: Covenant
  • 2019.11 [4hou] Covenant 利用分析
  • 2019.11 [3gstudent] Covenant 利用分析
  • 2019.10 [cobbr] Covenant: Developing Custom C2 Communication Protocols
  • 2019.10 [specterops] Covenant: Developing Custom C2 Communication Protocols
  • 2019.09 [freebuf] Covenant:レッドチーム向けに設計された.NETコマンドライン制御フレームワーク
  • 2019.09 [stealthbits] Setup, Configuration, and Task Execution with Covenant: The Complete Guide
  • 2019.08 [stealthbits] Next-Gen Open Source C2 Frameworks in a Post PSEmpire World: Covenant
  • 2019.08 [rastamouse] Covenant, Donut, TikiTorch
  • 2019.08 [cobbr] Covenant: The Usability Update
  • 2019.08 [specterops] Covenant: The Usability Update
  • 2019.02 [cobbr] Entering a Covenant: .NET Command and Control
  • 2019.02 [rvrsh3ll]

Slackor

ツール

  • [332星][12d] [Py] coalfire-research/slackor A Golang implant that uses Slack as a command and control server

記事

  • 2019.09 [freebuf] Slackor:Go言語で書かれたC&Cサーバー
  • 2019.08 [freebuf] Slackor:Slackをコマンド制御サーバーとして利用する方法
  • 2019.06 [n00py] Introducing Slackor, a Remote Access Tool Using Slack as a C2 Channel

QuasarRAT

ツール

  • [2932星][10m] [C#] quasar/quasarrat Remote Administration Tool for Windows

記事

  • 2019.10 [UltraHacks] QuasarRAT [Free Download] | [TUTORIAL VIDEO] | Ultra Hacks
  • 2018.09 [malwarebytes] Buggy implementation of CVE-2018-8373 vulnerability used to deliver Quasar RAT
  • 2018.03 [4hou] マクロコードを利用してNetwiredRCとQuasar RATを拡散する悪意のあるRTF文書の詳細分析
  • 2018.01 [paloaltonetworks] VERMIN: Quasar RAT and Custom Malware Used I
  • 2017.12 [HackerSploit] QuasarRAT - The Best Windows RAT? - Remote Administration Tool for Windows
  • 2017.11 [n0where] Free, Open-Source Remote Administration Tool for Windows: QuasarRAT
  • 2017.10 [TechnoHacker] Quasar RAT review
  • 2017.10 [rsa] MalSpam Delivers RAT SpyWare Quasar 9-27-2017
  • 2017.01 [paloaltonetworks] Downeks and Quasar RAT Used in Recent Targeted Attacks Against Go

EvilOSX

ツール

  • [1376星][2y] [Py] marten4n6/evilosx An evil RAT (Remote Administration Tool) for macOS / OS X.

記事

  • 2019.07 [hackingarticles] EvilOSX-RAT for MacOS/OSX
  • 2019.06 [NullByte] Take Control Over MacOS Computers with EvilOSX [Tutorial]
  • 2018.08 [freebuf] EvilOSX:強力なmacOSリモート管理ツール(RAT)
  • 2018.07 [pentesttoolz] EvilOSX – Evil Remote Administration Tool (RAT) for macOS/OS X – Kali Linux 2018.2
  • 2018.06 [n0where] Pure python post-exploitation RAT for macOS & OSX: EvilOSX
  • 2018.03 [applehelpwriter] defending against EvilOSX, a python RAT with a twist in its tail
  • 2018.03 [binarydefense] EvilOSX - Binary Defense
  • 2018.03 [binarydefense] EvilOSX
  • 2017.11 [NullByte] EvilOSX RAT - How to build a payload and start a server

Merlin

ツール

  • [2568星][6m] [Go] ne0nd0g/merlin Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

記事

  • 2019.03 [hackingarticles] Command and Control Guide to Merlin
  • 2018.02 [lockboxx] Merlin for Red Teams
  • 2017.12 [n0where] Cross-Platform Post-Exploitation HTTP/2 Command & Control Server: Merlin

商用ソフトウェア


Team Viewer

ツール

  • [405星][2y] [C++] vah13/extracttvpasswords Frida を使用して TeamViewer メモリからパスワードを抽出するツール
  • [277星][2y] [C++] gellin/teamviewer_permissions_hook_v1 A proof of concept injectable C++ dll, that uses naked inline hooking and direct memory modification to change your TeamViewer permissions.
  • [175星][9d] uknowsec/sharpdecryptpwd Windows システムに保存されているパスワードを解析するためのツール。対象:Navicat, TeamViewer, FileZilla, WinSCP, Xmangagerシリーズ製品(Xshell, Xftp)。
  • [59星][2y] [Py] attackercan/teamviewer-dumper メモリから TeamViewer ID とパスワードをダンプ
  • [42星][6d] [C#] v1v1/decryptteamviewer Enumerate and decrypt TeamViewer credentials from Windows registry
  • [36星][5y] [C++] kkar/teamviewer-dumper-in-cpp 子ウィンドウを列挙して、実行中の TeamViewer インスタンスから ID、パスワード、アカウント設定をダンプ
  • [25星][5m] [C++] dydtjr1128/remoteassistance-cpp [WIP] TeamViewer 風のリモートアシスタンス(C++)

記事- 2020.02 [yoroi] Importante Vulnerabilità su TeamViewer

  • 2020.01 [freebuf] 「正規」監視ソフトがブラック産業に悪用、出力管理の甘さが別のTeamViewerを生むか?
  • 2019.11 [sessionstack] TeamViewer, and Alternative Remote Access and Web Conferencing Solutions, Through the Lens of Customer Service
  • 2019.10 [threatbook] 「TeamViewerハッキング騒動」は事実か誇張か?慌てるな!一読で対策方法がわかる
  • 2019.10 [freebuf] TeamViewer「侵入」事件の調査と結論
  • 2019.04 [4hou] トロイの木馬化したTeamViewerを使った複数国家政府機関への攻撃
  • 2019.04 [0x00sec] Port 5900 open on a MAC that used Teamviewer, trying to access it
  • 2018.09 [blackmoreops] Install TeamViewer on Kali Linux 2018
  • 2018.08 [freebuf] あなたがダウンロードしたTeamViewer13クラック版には毒があるかもしれない
  • 2018.08 [4hou] RMSとTeamViewerを使って工業企業を攻撃
  • 2018.08 [kaspersky] Attacks on industrial enterprises using RMS and TeamViewer
  • 2018.08 [securelist] Attacks on industrial enterprises using RMS and TeamViewer
  • 2017.12 [4hou] TeamViewer 13.0.5058の権限脆弱性テスト
  • 2017.12 [3gstudent] TeamViewer 13.0.5058の権限脆弱性テスト
  • 2017.12 [3gstudent] TeamViewer 13.0.5058の権限脆弱性テスト
  • 2017.12 [malwarebytes] Use TeamViewer? Fix this dangerous permissions bug with an update

マルウェア(一部)


Gh0st

ツール

  • [301星][7d] [C++] yuanyuanxiang/simpleremoter gh0stベースのリモートコントローラー:端末管理、プロセス管理、ウィンドウ管理、リモートデスクトップ、ファイル管理、音声管理、ビデオ管理、サービス管理、レジストリ管理などの機能を実装
  • [273星][7y] [C++] sin5678/gh0st a open source remote administrator tool
  • [91星][6y] [C++] igh0st/gh0st3.6_src
  • [90星][1m] [C++] zibility/remote Gh0stソースコードを参考に開発されたPCリモートアシスタンスソフト。リモートシェル、ファイル管理、デスクトップ管理、メッセージ送信などの機能を持つ。
  • [21星][5m] [C++] holmesian/gh0st-light 簡略化された古いもの

記事

  • 2020.01 [z3roTrust] Becoming Untraceable - 12.0_Gh0st_Us3r.dll
  • 2020.01 [rsa] Detecting Gh0st RAT in the RSA NetWitness Platform
  • 2019.06 [binarydefense] Gh0stCringe (Formerly CirenegRAT) - Binary Defense
  • 2019.03 [alienvault] The odd case of a Gh0stRAT variant
  • 2018.11 [trendmicro] 機械学習を使ってGh0st遠隔操作型トロイの木馬の亜種の悪意あるネットワークフローを分類
  • 2018.08 [traffic] [2018-08-12] KaiXinEK->Gh0stRAT
  • 2018.07 [traffic] [2018-07-16] KaiXinEK->Gh0stRAT
  • 2018.07 [inquest] Field Notes: Malicious HFS Instances Serving Gh0stRAT
  • 2018.07 [360] 遠隔操作型トロイの木馬Gh0st RATサンプルの初期分析
  • 2018.05 [id] CryptGh0st
  • 2018.05 [freebuf] Gh0st RAT亜種のネットワークデータをデコード
  • 2018.04 [freebuf] Gh0st/大灰狼RATファミリー通信プロトコル分析
  • 2018.04 [360] Gh0st/大灰狼RATファミリー通信プロトコル分析
  • 2017.12 [traffic] [2017-12-06] KaiXinEK->Gh0stRAT
  • 2016.06 [cysinfo] Hunting and Decrypting Communications of Gh0st RAT in Memory
  • 2014.05 [pediy] [オリジナル]Gh0st3.6 windows7で接続できないバグ分析
  • 2014.04 [pediy] [議論]Gh0st3.6 IOCP送信バグ

NanoCore

ツール

  • [2星][10m] [Py] jacobpimental/nanocore_extractor コンパイルされたAutoITスクリプトからnanocoreサンプルを抽出

記事

  • 2020.01 [molly] NanoCore: The RAT that keeps on keeping on. How to detect and prove an infection.
  • 2019.11 [4hou] 二重ロードのZIPファイルがNanocore RATを拡散
  • 2019.10 [morphisec] NanoCore RAT Under the Microscope
  • 2019.06 [myonlinesecurity] More AgentTesla keylogger and Nanocore RAT in one bundle
  • 2019.06 [myonlinesecurity] Nanocore RAT via fake DHL failed delivery in Chinese
  • 2019.06 [4hou] NanoCore犯罪ソフトウェア攻撃チェーンを解析
  • 2019.06 [yoroi] Dissecting NanoCore Crimeware Attack Chain
  • 2019.05 [myonlinesecurity] nanocore RAT via fake order in password protected word doc with wrong password
  • 2019.05 [myonlinesecurity] Fake Fedex Express Shipment For Pickup in iso delivers nanocore using Sendgrid
  • 2019.05 [goggleheadedhacker] Unpacking NanoCore Sample Using AutoIT
  • 2019.03 [carbonblack] TAU Threat Intelligence Notification: NanoCore – Old Malware, New Tricks!
  • 2019.01 [myonlinesecurity] Fake Autec Power purchase Order delivers Nanocore RAT
  • 2019.01 [myonlinesecurity] Nanocore via fake order using dde in csv files
  • 2019.01 [myonlinesecurity] Nanocore RAT via fake order emails

NjRat

ツール

  • [143星][2y] [Visual Basic .NET] alibawazeeer/rat-njrat-0.7d-modded-source-code NJR
  • [128星][8d] [Visual Basic] mwsrc/njrat njRAT SRC Extract
  • [14星][5m] [C#] nyan-x-cat/njrat-0.7d-stub-csharp njRAT C# Stub - Fixed For PowerShell
  • [3星][2y] [Py] seep1959/njutils njrat 0.6.4、0.7d、および0.7dゴールデンエディション用のクライアント兼チャットプログラム。

記事

  • 2019.12 [carbonblack] Threat Analysis Unit (TAU) Threat Intelligence Notification: njRAT
  • 2019.09 [freebuf] Gorgon APTグループが再び動く:DropBoxからNJRatへの曲折の道のり
  • 2019.05 [morphisec] A look at Hworm / Houdini AKA njRAT
  • 2019.05 [myonlinesecurity] Fake Payment receipt vbs drops njrat bladabindi downloads Agent Tesla via Sendspace.
  • 2018.11 [trendmicro] AutoItでコンパイルされたワーム、リムーバブルメディアを介して拡散、ファイルレス版のnjRATバックドアを配信
  • 2018.06 [360] 古木に新花--njRATファミリーマルウェア分析レポート
  • 2018.06 [freebuf] 技術討論 | NjRATがBase64エンコードによる難読化で360アンチウイルスを回避する実験
  • 2018.04 [UltraHacks] njRAT v0.7 | Tutorial | www.ultrahacks.org | Ultra Hacks
  • 2018.03 [broadanalysis] Guest Blog Post: njRat Analysis with Volatility
  • 2018.01 [rsa] Malspam delivers njRAT 1-11-2018
  • 2017.12 [malwarenailed] Revisiting HWorm and NjRAT
  • 2016.12 [freebuf] 史上最も完全なnjRAT通信プロトコル分析
  • 2016.08 [MalwareAnalysisForHedgehogs] Malware Analysis - Unpacking njRAT Protected by Confuser v.1.9 and others
  • 2016.01 [sensecy] Is There A New njRAT Out There?
  • 2015.12 [sec] トロイの木馬情報分析:njRAT&H-worm

Revenge RAT

ツール

  • [21星][2m] [C#] nyan-x-cat/revengerat-stub-cssharp Revenge-RAT C# Stub - Fixed

記事

  • 2020.01 [malware] 2020-01-15 - QUICK POST: MALSPAM PUSHING REVENGE RAT
  • 2019.11 [fortinet] Double Trouble: RevengeRAT and WSHRAT
  • 2019.09 [360] Revenge-RATがイタリアに対するフィッシングメール攻撃で使用される
  • 2019.04 [4hou] フィッシングメールを利用してRevengeRATを拡散するAggah作戦
  • 2019.03 [alienvault] Mapping TrickBot and RevengeRAT with MITRE ATT&CK and AlienVault USM Anywhere
  • 2019.02 [4hou] Revenge RATマルウェアのアップグレード版が登場
  • 2018.04 [dissectmalware] Stealthy VBScript dropper dropping Revenge RAT
  • 2017.10 [rsa] Malspam Delivers Revenge RAT October-2017
  • 2016.08 [deniable] Lurking Around Revenge-RAT

PlugX### ツール

  • [28スター][7y] [Py] kcreyts/plugxdecoder Decodes PlugX traffic and encrypted/compressed artifacts

記事

  • 2020.01 [hexacorn] The Wizard of X – Oppa PlugX style, Part 2
  • 2019.11 [BorjaMerino] Rebind Socket Windows: PoC PlugX Controller
  • 2018.06 [countuponsecurity] Digital Forensics – PlugX and Artifacts left behind
  • 2018.05 [countuponsecurity] Malware Analysis – PlugX – Part 2
  • 2018.02 [4hou] PlugX マルウェアファミリーの攻撃力を解明
  • 2018.02 [360] PlugX マルウェア分析レポート
  • 2018.02 [countuponsecurity] Malware Analysis – PlugX
  • 2017.09 [fortinet] Deep Analysis of New Poison Ivy/PlugX Variant - Part II
  • 2017.09 [fortinet] 新種の Poison Ivy/PlugX バリアントの詳細分析
  • 2017.09 [360] Stack overflow in PlugX RAT
  • 2017.07 [hexacorn] The Wizard of X – Oppa PlugX style
  • 2017.02 [jpcert] PlugX + Poison Ivy = PlugIvy? - PlugX Integrating Poison Ivy’s Code -
  • 2016.06 [airbuscybersecurity] Getting a PlugX builder
  • 2016.06 [cylance] CylancePROTECT® vs. PlugX – JTB Breach Affects 7.93 Million People in Japan
  • 2016.03 [securelist] PlugX malware: A good hacker is an apologetic hacker
  • 2015.11 [volatility] PlugX: Memory Forensics Lifecycle with Volatility

RemcosRAT

  • 2019.10 [fortinet] New Variant of Remcos RAT Observed In the Wild
  • 2019.09 [myonlinesecurity] Some changes to Remcos Rat persistence method
  • 2019.09 [myonlinesecurity] Fake invoice tries to deliver Remcos RAT
  • 2019.09 [freebuf] フィッシングメールに含まれるRemcos RAT変種の分析
  • 2019.08 [trendmicro] Analysis: New Remcos RAT Arrives Via Phishing Email
  • 2019.06 [myonlinesecurity] Remcos Rat via fake invoice using multiple delivery methods.
  • 2019.06 [HackerSploit] Remcos RAT Review - The Most Advanced Remote Access Tool
  • 2018.11 [myonlinesecurity] More Fake DHL invoices delivering Remcos RAT via office XML files
  • 2018.10 [myonlinesecurity] Fake DHL READ : (DHL Express) -Delivery Address Confirmation delivers Remcos Rat
  • 2018.09 [myonlinesecurity] Fake Purchase Order email delivers Remcos RAT
  • 2018.09 [360] Remcosのボットネットを解明
  • 2018.08 [securityledger] Cisco Links Remote Access Tool Remcos to Cybercriminal Underground
  • 2018.08 [talosintelligence] Picking Apart Remcos Botnet-In-A-Box
  • 2018.08 [UltraHacks] Remcos RAT Tutorial | Remote Administration Tool | Ultra Hacks

L0rdixRAT

  • 2019.08 [bromium] Decrypting L0rdix RAT’s C2
  • 2019.07 [bromium] An Analysis of L0rdix RAT, Panel and Builder
  • 2018.11 [ensilo] L0RDIX: Multipurpose Attack Tool

LodaRAT

  • 2020.02 [talosintelligence] Loda RAT Grows Up

GulfRAT

  • 2020.01 [TheCyberWire] Phishing with a RAT in the Gulf. More on how Jeff Bezos was hacked. Microsoft discloses data...
  • 2020.01 [TheCyberWire] Escalation in the Gulf as a US air strike kills Iran’s Quds commander. Travelex and RavnAir...
  • 2019.08 [nettitude] Tanker Cyber Attacks taking place in the Gulf
  • 2017.09 [mikefrobbins] PowerShell Toolmaking session this Saturday, September 30th at Gulf Coast Code Camp 2017 in Mobile, Alabama
  • 2016.11 [fireeye] FireEye Responds to Wave of Destructive Cyber Attacks in Gulf Region
  • 2016.03 [elearnsecurity] Visit eLearnSecurity on Gulf Information Security and Gulf Expo 2016 in Dubai
  • 2015.07 [welivesecurity] New report explains gulf between security experts and non-experts
  • 2010.08 [publicintelligence] Los Zetas and Gulf Cartel Perpetrators of Mexican Drug Trafficking Violence Organizational Chart
  • 2010.05 [publicintelligence] BP Minerals Management Service Workshop Brief: Unlocking Gulf of Mexico “Technological Challenges”

NetWireRAT

  • 2020.01 [securityintelligence] New NetWire RAT Campaigns Use IMG Attachments to Deliver Malware Targeting Enterprise Users
  • 2019.11 [carbonblack] Active C2 Discovery Using Protocol Emulation Part1 (HYDSEVEN NetWire)
  • 2019.09 [fortinet] New NetWire RAT Variant Being Spread Via Phishing
  • 2019.08 [malware] 2019-08-23 - DATA DUMP (URSNIF, RIG EK, NETWIRE RAT)
  • 2019.04 [myonlinesecurity] Fake DHL Shipment Notification delivers Netwire Trojan
  • 2018.11 [traffic] [2018-11-21] HookAds->FalloutEK->AZORult->NetWireRAT
  • 2017.11 [myonlinesecurity] Fake HSBC Advising Service Payment Advice malspam delivers Netwire trojan
  • 2017.10 [myonlinesecurity] Fake HSBC Swift Copy delivers Netwire trojan
  • 2017.09 [TechnoHacker] NetWire HKCU/Run vs ActiveX Startup
  • 2017.08 [TechnoHacker] Netwire Tutorial: How to Sign the Android Host
  • 2017.04 [TechnoHacker] How to crypt Netwire with Cyberseal
  • 2017.04 [TechnoHacker] Netwire RAT Review
  • 2014.08 [paloaltonetworks] NetWire and MITRE
  • 2014.08 [paloaltonetworks] New Release: Decrypting NetWire C

JhoneRAT

  • 2020.01 [talosintelligence] JhoneRAT: Cloud based python RAT targeting Middle Eastern countries

Dacls

  • 2019.12 [360] Lazarus GroupがDacls RATを使用してLinuxプラットフォームを攻撃
  • 2019.12 [360] Dacls, the Dual platform RAT

BlackRemote

  • 2019.12 [carbonblack] Threat Analysis Unit (TAU) Threat Intelligence Notification: BlackRemote RAT

Orcus

  • 2019.11 [krebsonsecurity] Orcus RAT Author Charged in Malware Scheme
  • 2019.01 [morphisec] New Campaign Delivers Orcus RAT
  • 2018.04 [freebuf] SYLKファイルを介して拡散するOrcus遠隔操作トロイの木馬のサンプル分析
  • 2017.12 [fortinet] Circle of the fraud: more information about Bitcoin Orcus RAT campaign
  • 2017.12 [fortinet] Circle of the fraud: more information about Bitcoin Orcus RAT campaign
  • 2017.12 [fortinet] A Peculiar Case of Orcus RAT Targeting Bitcoin Investors
  • 2017.12 [fortinet] Orcus 遠隔操作がビットコイン投資家を標的に、ビットコイン取引ボット Gunbot に偽装して拡散
  • 2017.05 [freebuf] Orcus VMの解決手順
  • 2017.04 [hackingarticles] Hack the Orcus VM CTF Challenge
  • 2017.04 [techanarchy] VulnHub Orcus Solution
  • 2017.03 [vulnhub] hackfest2016: Orcus
  • 2017.03 [vulnhub] hackfest2016: Orcus
  • 2016.08 [deniable] Cracking Orcus RAT
  • 2016.08 [deniable] Cracking Orcus RAT
  • 2016.08 [deniable] Cracking Orcus RAT
  • 2016.08 [paloaltonetworks] Orcus – Birth of an unusual plugin bu

NukeSped

  • 2019.10 [fortinet] A Deep-Dive Analysis of the NukeSped RATs

DarkComet- 2018.09 [UltraHacks] How to setup DarkCometRAT 5.3.1 + Portforward

  • 2018.04 [freebuf] CVE-2017-11882新動向:AutoITスクリプトを利用してDarkCometバックドアを放出
  • 2018.03 [tencent] CVE-2017-11882新動向:AutoITスクリプトを利用してDarkCometバックドアを放出
  • 2017.10 [rsa] Malspam Delivers DarkComet RAT October-2017
  • 2017.01 [HackingMonks] Darkcomet Rat Tutorial (Trojans are awesome)
  • 2016.02 [hackingarticles] Hack Remote PC using Darkcomet RAT with Metasploit
  • 2015.11 [TechnoHacker] How to setup DarkComet RAT [Voice Tutorial] [Download Link]
  • 2015.07 [SecurityBSidesLondon] Kevin Breen - DarkComet From Defense To Offense - Identify your Attacker
  • 2015.03 [heimdalsecurity] Security Alert: Infamous DarkComet RAT Used In Spear Phishing Campaigns
  • 2015.03 [sketchymoose] Smooshing the Square Peg into the Round Hole: DarkComet Plugin for 64-bit images
  • 2012.07 [freebuf] DarkComet RAT作者がプロジェクトの開発停止を発表
  • 2012.06 [freebuf] [更新]強力な遠隔操作 – DarkComet RAT V5.3.1
  • 2012.06 [malwarebytes] You dirty RAT! Part 1: DarkComet
  • 2012.04 [trendmicro] Fake Skype Encryption Software Cloaks DarkComet Trojan
  • 2012.04 [toolswatch] DarkComet-RAT Remote Administration Tool v5.1.1 released
  • 2012.03 [quequero] DarkComet Analysis – Understanding the Trojan used in Syrian Uprising

WarZone RAT

  • 2018.11 [UltraHacks] Warzone RAT C++ | Hidden VNC [PROMOTION VIDEO]| Ultra Hacks

BlackShades

  • 2017.01 [TechnoHacker] Blackshades Revisited
  • 2016.02 [TechnoHacker] How to use Blackshades [download link]
  • 2016.02 [TechnoHacker] How to setup Blackshades RAT [Voice Tutorial] [download link]
  • 2014.05 [malwarebytes] Taking off the Blackshades
  • 2014.05 [endgame] Blackshades: Why We Should Care About Old Malware
  • 2014.05 [trendmicro] The Blackshades RAT – Entry-Level Cybercrime
  • 2014.05 [publicintelligence] FBI Blackshades Remote Access Tool Private Sector Bulletins and Domain List
  • 2014.05 [alienvault] Blackshades Smackdown & Poking China in the Eye
  • 2014.05 [cylance] A Study in Bots: BlackShades Net
  • 2014.05 [welivesecurity] Behind Blackshades: a closer look at the latest FBI cyber crime arrests
  • 2014.05 [krebsonsecurity] ‘Blackshades’ Trojan Users Had It Coming
  • 2014.05 [malwaretech] FBI Cybercrime Crackdown – Blackshades
  • 2012.07 [malwarebytes] BlackShades Co-Creator Arrested!
  • 2012.06 [malwarebytes] BlackShades in Syria
  • 2012.06 [citizenlab] Syrian Activists Targeted with BlackShades Spy Software

DenesRAT

  • 2019.10 [nsfocus] 海莲花(APT32)組織 DenesRATトロイの木馬と関連攻撃チェーン分析

WSH RAT

  • 2019.10 [angelalonso] WSH RAT - Analysis of the code
  • 2019.10 [angelalonso] Fudcrypt using H-Worm from WSH RAT
  • 2019.09 [freebuf] ハッカーが新型WSH RAT最新変種サンプルを購入し、銀行顧客を攻撃
  • 2019.09 [angelalonso] WSH RAT and the link to unknowcrypter and Fudcrypt

Qrypter RAT

  • 2018.04 [4hou] ますます流行するQrypter RATの動作状況を分析
  • 2017.12 [angelalonso] Qrypter Java RAT using Tor

Adwind

  • 2019.08 [4hou] Adwind遠隔操作は現在、公共事業部門の攻撃活動に広く利用されている
  • 2018.10 [reversinglabs] eWeek: Cisco Talos and ReversingLabs warn that the Adwind Remote Access Trojan (RAT) has added capabilities that enable it bypass some anti-virus technologies
  • 2018.04 [4hou] スパムメールキャンペーンがXTRAT、DUNIHI、Adwindバックドアを使用
  • 2018.04 [trendmicro] トレンドマイクロ研究者、スパムメールがクロスプラットフォーム遠隔操作Adwindを拡散し、同時にバックドアXTRAT、DUNIHI、Lokiをバンドルしていることを確認
  • 2018.04 [ensilo] enSilo Blocks New Variant of Adwind RAT
  • 2018.03 [OALabs] Analyzing Adwind / JRAT Java Malware
  • 2018.03 [heimdalsecurity] Security Alert: Spam Campaign Spreads Adwind RAT variant, Targeting Computer Systems
  • 2018.02 [fortinet] New jRAT/Adwind Variant Being Spread With Package Delivery Scam
  • 2018.02 [rsa] Winds of Winter - MalSpam Delivers Adwind RAT 2-1-2018
  • 2018.02 [myonlinesecurity] Fake Swift Copy malspam via compromised sites delivering Java Adwind/ QRAT /JRAT Trojan
  • 2017.12 [myonlinesecurity] Fake “Your UPS Invoice Is Ready” malspam delivers Java Adwind / Java JRAT Trojan
  • 2017.08 [netskope] Adwind RAT employs new obfuscation techniques
  • 2017.07 [trendmicro] Spam Campaign Delivers Cross-platform Remote Access Trojan Adwind

CannibalRAT

  • 2018.02 [talosintelligence] CannibalRAT targets Brazil

jRAT

  • 2018.10 [cofense] H-Worm and jRAT Malware: Two RATs are Better than One
  • 2018.08 [Sebdraven] Lammers, stealers and RATs: same technics like Formbook malware to install JRAT and HawkEye…
  • 2018.03 [trustwave] Crypter-as-a-Service Helps jRAT Fly Under The Radar

jsRAT

  • 2018.02 [netskope] ShortJSRAT leverages cloud with scriptlets
  • 2017.07 [rsa] Recreating the Crime Scene - A JSRat Story
  • 2016.05 [evi1cg] JSRATのいくつかの起動方法
  • 2016.03 [hackingarticles] Hack Remote Windows 10 PC using JSRAT
  • 2015.07 [secist] JSRATを使用してwin10システムをリモート管理

CrossRat

  • 2018.01 [360] グローバルなサイバースパイ活動におけるクロスプラットフォームマルウェア-CrossRATの分析(下)
  • 2018.01 [4hou] CrossRatリモートコントロールソフトウェアの分析
  • 2018.01 [360] グローバルなサイバースパイ活動におけるクロスプラットフォームマルウェア-CrossRATの分析(上)
  • 2018.01 [objective] グローバルなサイバースパイ活動に使用されるクロスプラットフォーム遠隔操作CrossRATの分析

ArmaRat

  • 2018.09 [360] ArmaRat:イランユーザーを対象とした2年にわたるスパイ活動

RokRAT

  • 2018.01 [morphisec] Threat Profile: RokRAT
  • 2017.12 [MalwareAnalysisForHedgehogs] Malware Analysis - ROKRAT Unpacking from Injected Shellcode
  • 2017.11 [talosintelligence] ROKRAT Reloaded
  • 2017.06 [alienvault] A RAT that Tweets: New ROKRAT Malware Hides behind Twitter, Amazon, and Hulu Traffic
  • 2017.04 [360] クラウドプラットフォームを使用したROKRATトロイの木馬分析
  • 2017.04 [talosintelligence] ROKRAT遠隔操作分析:フィッシングからペイロードまで、Twitter/Yandex/MediafireをC&Cとして使用

CatKARAT

  • 2018.01 [hackingarticles] TCP & UDP Packet Crafting with CatKARAT

TheFatRat

  • 2018.11 [freebuf] 技術共有 | TheFatRatであなたのAndroidスマートフォンをハッキングする方法
  • 2017.11 [TheHackerStuff] TheFatRat - Hacking Over WAN - Embedding Payload in Original Android APK - Without Port Forwarding
  • 2016.12 [TheHackerStuff] Kali Linux - TheFatRat - Creating an Undetectable Backdoor - Bypass all AntiVirus
  • 2016.09 [freebuf] TheFatRat:Msfvenomの簡単なバックドア生成ツール
  • 2016.07 [hackingarticles] Hack Remote Windows 10 PC using TheFatRat

OmniRAT

  • 2017.07 [skycure] Nasty backdoor OmniRAT is back, disguised as GhostCtrl on Android mobile devices
  • 2015.11 [freebuf] OmniRAT変種トロイの木馬が悪用される

LuminosityLink

  • 2018.10 [welivesecurity] LuminosityLink RAT pack leader jailed 30 months in the US
  • 2018.02 [paloaltonetworks] RAT Trapped? LuminosityLink Falls Foul of Vermin Eradicatio
  • 2017.05 [UltraHacks] How to setup LuminosityLink RAT with nVPN | PORTFORWARD FIX!!!
  • 2017.05 [umbrella] The Weather Report: Seamless Campaign, LuminosityLink RAT, and OG-Miner!
  • 2017.03 [myonlinesecurity] Request for 1st new order proforma invoice malspam delivers LuminosityLink RAT
  • 2016.07 [paloaltonetworks] Investigating the LuminosityLink Remote Access Trojan Conf

その他- 2020.02 [proofpoint] Proofpoint Q4 2019 脅威レポートおよび年間レビュー — RATの年はさらに同様の内容で終了

  • 2020.01 [sentinelone] CISO エッセンシャル | リモートアクセストロイの木馬がエンタープライズに与える影響
  • 2020.01 [TheCyberWire] RAT、バックドア、およびリモートコード実行のゼロデイ。三菱電機への侵入、Telnet...
  • 2020.01 [freebuf] 有効なデジタル証明書に埋め込まれた遠隔操作トロイの木馬ウイルスの分析レポート
  • 2020.01 [rambus] Cable Haunt の脆弱性により、ハッカーが約2億台のケーブルモデムにリモートアクセスできる可能性
  • 2020.01 [proofpoint] 脅威インサイト 2019 年振り返り: RAT の年
  • 2019.12 [ptsecurity] トルコのトリック:ワーム、RAT…そしてフリーランサー
  • 2019.12 [infosecinstitute] マルウェアスポットライト: リモートアクセストロイの木馬(RAT)とは
  • 2019.12 [UltraHacks] Dark Shades Android RAT | Ultra Hacks
  • 2019.11 [broadanalysis] Fallout Exploit Kit が疑わしいリモートアクセストロイの木馬(RAT)を配信
  • 2019.11 [carbonblack] 脅威分析ユニット(TAU)脅威インテリジェンス通知: AsyncRAT
  • 2019.11 [proofpoint] Proofpoint Q3 2019 脅威レポート — Emotet の復活、RAT の支配、そしてさらに
  • 2019.10 [tencent] 快Go鉱夫(KuaiGoMiner)が数万台のコンピュータを制御してマイニング、遠隔操作トロイの木馬を放出して機密を窃取
  • 2019.10 [4hou] 快Go鉱夫(KuaiGoMiner)が数万台のコンピュータを制御してマイニング、遠隔操作トロイの木馬を放出して機密を窃取
  • 2019.10 [proofpoint] TA505、Get2 ダウンローダーと共に新しい SDBbot リモートアクセストロイの木馬を配布
  • 2019.10 [tencent]

Read more

ツールをダウンロード
  • (1) CatKARAT
  • (5) TheFatRat
  • (2) OmniRAT
  • (6) LuminosityLink
  • (477) その他
  • Entering a Covenant: .NET Command and Control
  • 2019.01 [specterops] Entering a Covenant: .NET Command and Control
  • 2017.11 [360] TeamViewerをベースにした中小企業狙いのリモートアクセス型トロイの木馬分析
  • 2017.08 [freebuf] Fridaを使ってTeamViewerのメモリからパスワードを抽出
  • 2017.04 [4hou] マルウェアがどのようにTeamViewerを悪用するか詳しく知る
  • 2017.02 [4hou] TeamSpyが再び帰ってきた、TeamViewerがその攻撃ベクターに
  • 2016.12 [trendmicro] New SmsSecurity Variant Roots Phones, Abuses Accessibility Features and TeamViewer
  • 2016.10 [broadanalysis] Rig Exploit Kit via EITEST delivers malicious payload and TeamViewer Remote Control
  • 2016.06 [trendmicro] Unsupported TeamViewer Versions Exploited For Backdoors, Keylogging
  • 2016.06 [] 最も広く使われるリモートコントロールソフトTeamViewerがハッキングされる
  • 2016.06 [radware] Has TeamViewer Been Hacked?
  • 2016.06 [fortinet] Threat Landscape Perspectives: TeamViewer Attack – Spy vs. Spy Misdirection?
  • 2016.03 [privacy] Surprise, Hackers Use TeamViewer to Spread Ransomware
  • 2015.08 [volatility] Recovering TeamViewer (and other) Credentials from RAM with EditBox
  • 2015.06 [] 実行中のTeamViewerのアカウントとパスワードを取得
  • 2014.05 [trendmicro] Remote Help for Family and Friends – Part 1: Installing and Using TeamViewer
  • 2014.02 [webroot] Managed TeamViewer based anti-forensics capable virtual machines offered as a service
  • 2014.01 [robert] Howto install Teamviewer 9.x on Ubuntu >= 12.04 64bit (in my case 13.10)
  • 2013.05 [security] Installing Teamviewer 8 on Kali 64bit (Debian)
  • 2013.03 [securelist] The TeamSpy Crew Attacks – Abusing TeamViewer for Cyberespionage
  • 2014.03 [trendmicro] Kunming Attack Leads to Gh0st RAT Variant
  • 2013.08 [pediy] 二次のgh0st
  • 2013.06 [trendmicro] Targeted Attack in Taiwan Uses Infamous Gh0st RAT
  • 2012.11 [trendmicro] DaRK DDoSseR Leads to Gh0st RAT
  • 2012.06 [alienvault] New MaControl variant targeting Uyghur users, the Windows version using Gh0st RAT
  • 2012.05 [forcepoint] The Amnesty International UK website was compromised to serve Gh0st RAT [Update]
  • 2019.01 [malware] 2019-01-04 - MALSPAM PUSHES NANOCORE RAT
  • 2018.11 [myonlinesecurity] Fake Payment Receipt delivers Nanocore RAT malware
  • 2018.06 [UltraHacks] NanoCore [Free Download] [No Virus] [DL] | Ultra Hacks
  • 2018.04 [myonlinesecurity] Fake PAYMENT CONFIRMATION emails deliver Nanocore RAT
  • 2018.04 [myonlinesecurity] Nanocore Rat delivered via fake order emails
  • 2018.04 [myonlinesecurity] Nanocore via fake Purchase order malspam using Microsoft Office Equation Editor exploits
  • 2018.04 [myonlinesecurity] Nanocore RAT delivered by fake order malspam
  • 2018.02 [krebsonsecurity] Bot Roundup: Avalanche, Kronos, NanoCore
  • 2017.11 [myonlinesecurity] Fake Product Enquiry malspam delivers Nanocore RAT
  • 2017.10 [fortinet] PDF Phishing Leads to Nanocore RAT, Targets French Nationals
  • 2017.10 [fortinet] JavaScriptを内蔵したPDF悪意ファイル、起動時にGoogle Drive共有リンクからHTAファイルをダウンロード、HTAファイルからNanoCore遠隔操作をダウンロードし実行
  • 2017.08 [myonlinesecurity] Angelika Rodriguez – [email protected] – Purchase Order malspam delivers nanocore RAT
  • 2017.05 [netskope] NanocoreRAT delivery via cloud storage apps shifts from .uue to .r11
  • 2017.03 [itsjack] Nanocore Cracked Alcatraz – Leaving The Door Open
  • 2016.10 [sans] Malspam delivers NanoCore RAT
  • 2016.02 [paloaltonetworks] NanoCoreRAT Behind an Increase in Tax-Themed Phishin
  • 2015.11 [f] Halloween RAT: NanoCore Served Via PageFair Service
  • 2015.04 [ensilo] NanoCore RAT: It’s Not 100% Original
  • 2015.11 [alienvault] KilerRat: Taking over where Njrat remote access trojan left off
  • 2015.08 [virusbulletin] Paper: Life after the apocalypse for the Middle Eastern NJRat campaign
  • 2014.08 [mcafee] Trailing the Trojan njRAT
  • 2014.08 [mcafee] Trailing the Trojan njRAT
  • 2014.01 [rsa] Detecting njRAT in Your Environment
  • 2015.09 [cyintanalysis] Using threat_note To Track Campaigns: Returning to PIVY and PlugX Infrastructure
  • 2015.09 [airbuscybersecurity] Volatility plugin for PlugX updated
  • 2015.08 [rebsnippets] PlugX Chronicles
  • 2015.08 [cyintanalysis] Threat Analysis: Poison Ivy and Links to an Extended PlugX Campaign
  • 2015.08 [airbuscybersecurity] Latest changes in PlugX
  • 2015.05 [paloaltonetworks] PlugX Uses Legitimate Samsung Application for DLL Sid
  • 2015.04 [freebuf] マルウェア分析:台湾公式版League of LegendsとPath of Exileに遠隔操作ツールPlugXが埋め込まれる
  • 2015.01 [jpcert] Analysis of a Recent PlugX Variant - "P2P PlugX"
  • 2015.01 [] A Closer Look at PlugX from League of Legends / Path of Exile
  • 2015.01 [trendmicro] PlugX Malware Found in Official Releases of League of Legends, Path of Exile
  • 2014.06 [trendmicro] PlugX RAT With “Time Bomb” Abuses Dropbox for Command-and-Control Settings
  • 2014.06 [lastline] An Analysis of PlugX Using Process Dumps from High-Resolution Malware Analysis
  • 2014.01 [airbuscybersecurity] PlugX "v2": meet "SController"
  • 2014.01 [airbuscybersecurity] PlugX: some uncovered points
  • 2013.12 [lastline] An Analysis of PlugX Malware
  • 2013.05 [freebuf] FireEye:PlugXの再活用、中国政治活動を狙ったAPT攻撃の分析
  • 2013.04 [trendmicro] New Wave of PlugX Targets Legitimate Apps
  • 2013.04 [securelist] Winnti returns with PlugX
  • 2012.09 [freebuf] 海外の専門家によるPlugX開発者への人肉検索と標的型攻撃の全過程分析
  • 2012.09 [alienvault] The connection between the Plugx Chinese gang and the latest Internet Explorer Zeroday
  • 2012.09 [trendmicro] Unplugging PlugX Capabilities
  • 2012.09 [alienvault] Tracking down the author of the PlugX RAT
  • 2012.09 [freebuf] 新種の遠隔操作ツールPlugxが悪用され、フィッシング攻撃で日本政府を標的に
  • 2012.09 [trendmicro] PlugX: New Tool For a Not So New Campaign
  • 2018.07 [myonlinesecurity] Fake DHL “Alert! Shipment Notification” delivers Remcos RAT
  • 2018.05 [fortinet] Remcos遠隔操作変種がCVE-2017-11882を悪用して拡散
  • 2018.04 [myonlinesecurity] Remcos RAT delivered by fake ” your workers are fighting” message
  • 2018.04 [myonlinesecurity] Remcos RAT delivered via fake CCICM international debt recovery service
  • 2018.04 [myonlinesecurity] Fake Payment recovery email spoofing CCICM international debt recovery service delivers Remcos rat via Microsoft Equation Editor Exploits
  • 2018.03 [tencent] 新種の遠隔操作トロイの木馬RemcosがCVE-2017-11882の脆弱性を悪用してリアルタイム攻撃
  • 2018.03 [myonlinesecurity] Fake order spoofed from Finchers ltd Sankyo-Rubber delivers Remcos RAT via ACE attachments
  • 2017.09 [malwarebreakdown] Malvertising Leads to RIG EK and Drops Remcos RAT.
  • 2017.09 [trendmicro] クラウドプラットフォーム Autodesk® A360 が悪用され、Adwind、Remcos、Netwire RAT などのマルウェアを拡散
  • 2017.08 [cybereason] Cybereason creates 'vaccine' to stop Remcos RAT
  • 2017.02 [fortinet] REMCOS: A New RAT In The Wild
  • 2016.07 [krebsonsecurity] Canadian Man Behind Popular ‘Orcus RAT’
  • 2012.02 [trendmicro] DarkComet Surfaced in the Targeted Attacks in Syrian Conflict
  • 2011.08 [toolswatch] DarkComet-RAT (Remote Administration Tool) v4.0 Fix 1 available
  • 2011.05 [toolswatch] DarkComet-RAT v3.3 available
  • 2011.01 [toolswatch] (EXCLUSIVE) DarkComet-RAT updated to v3.0.1
  • 2011.01 [toolswatch] EXCLUSIVE : DarkComet-RAT 3.0 released (Impressive RAT tool)
  • 2012.06 [malwarebytes] You Dirty RAT! Part 2 – BlackShades NET
  • 2017.03 [freebuf] Adwind RATが企業を標的にした攻撃、対象は100以上の国と地域
  • 2017.01 [codemetrix] Decrypting Adwind jRAT jBifrost trojan
  • 2016.08 [fortinet] JBifrost: Yet Another Incarnation of the Adwind RAT
  • 2016.07 [heimdalsecurity] Security Alert: Adwind RAT Used in Targeted Attacks with Zero AV Detection
  • 2016.02 [securelist] Expert: cross-platform Adwind RAT
  • 2016.02 [kaspersky] The wind that smells like RAT: The story of Adwind MaaS
  • 2013.11 [crowdstrike] Adwind RAT Rebranding
  • "月光(Moonlight)"ワームが大学ネットワークを脅かし、感染したコンピュータがリモート制御される
  • 2019.10 [4hou] "月光(Moonlight)"ワームが大学ネットワークを脅かし、感染したコンピュータがリモート制御される
  • 2019.10 [freebuf] スパイ対策の旅:最初の Android 遠隔操作トロイの木馬ツール分析
  • 2019.09 [4hou] ウイルスグループが phpStudy RCE 脆弱性を利用してバッチで感染させ、4つの遠隔操作トロイの木馬を配布
  • 2019.09 [aliyun] badusb を使用してユーザーにトロイの木馬を遠隔操作
  • 2019.09 [sensecy] アラビア語を話す脅威アクターが一般的な RAT SpyNote のソースコードを再利用し、ダークウェブで新品として販売
  • 2019.08 [securelist] ブラジル製の完全装備スパイ Android RAT: BRATA
  • 2019.08 [talosintelligence] RAT ラタトゥイユ: 漏洩した RAT で PC にバックドア
  • 2019.08 [malware] 2019-08-26 - データダンプ: SOCGHOLISH キャンペーンが NetSupport RAT を配信
  • 2019.08 [fortinet] 偽のインド所得税計算機が xRAT の亜種を配信
  • 2019.07 [tencent] 商貿信ファミリーの新たな活動:フィッシングメールを利用して商用遠隔操作トロイの木馬 RevetRAT を拡散
  • 2019.07 [freebuf] 遠隔操作トロイの木馬について知っておくべきポイント
  • 2019.07 [trendmicro] スパムキャンペーンがコロンビアの組織を標的に、カスタムメイドの 'Proyecto RAT' と C&C にメールサービス YOPmail を使用
  • 2019.07 [freebuf] APT34 のコアコンポーネント Glimpse: 遠隔操作の再現とトラフィック分析
  • 2019.07 [d] Red Team 日記、エントリ #1: NSA の PeddleCheap RAT を見えなくする
  • 2019.07 [yoroi] RAT を発見: 犯罪攻撃の物語
  • 2019.07 [cybersecpolitics] 書評: 知性の妄想、R.A. RATCLIFF
  • 2019.07 [4hou] トロイの木馬の進化傾向を探る: APT32 の複数バージョン遠隔操作トロイの木馬 Ratsnif の横断的分析
  • 2019.07 [4hou] 遠隔操作トロイの木馬について
  • 2019.07 [freebuf] 悪意のある lnk を送信し、JwsclTerminalServer を使用してリモート制御と情報取得を実行
  • 2019.07 [securityintelligence] オーバーレイの乗っ取り: AVLay リモートアクセストロイの木馬(RAT)のトリガーとは
  • 2019.07 [securityintelligence] オーバーレイの乗っ取り: ブラジルのリモートアクセストロイの木馬(RAT)のリバースエンジニアリング
  • 2019.07 [talosintelligence] RAT とスティーラーが新しいローダーで "Heaven's Gate" を突き進む
  • 2019.06 [4hou] H-worm ワームウイルスが映画のサンプルを装ったフィッシングに注意、軽率に添付ファイルをクリックすると遠隔操作トロイの木馬に感染
  • 2019.06 [nightst0rm] 私はどのようにして多くのウェブサイトの制御を奪ったのか?
  • 2019.06 [4hou] TA505 が最新の攻撃活動で HTML、RAT、その他の技術を使用
  • 2019.06 [trendmicro] 戦術の変化: TA505 グループの最新キャンペーンにおける HTML、RAT、その他の技術の使用を分析
  • 2019.05 [4hou] マルウェアのマルチタスク処理能力を向上させる Babylon RAT
  • 2019.05 [360] XLM マクロを利用して遠隔操作ツールを配布するスパムメール活動の記録
  • 2019.05 [arxiv] [1905.07273] 猫の中のラットを見つける: グループ異常検出を使用したステルス攻撃の検出
  • 2019.05 [freebuf] Python ベースの BS 遠隔操作 Ares の実践
  • 2019.05 [4hou] C&C 遠隔操作ツール: WebSocket C2
  • 2019.04 [paloaltonetworks] BabyShark マルウェア パート2 – KimJongRAT を使用した攻撃の継続
  • 2019.04 [freebuf] 遠隔操作の背後にいる黒幕をどのように突き止めたか
  • 2019.04 [4hou] C&C 遠隔操作ツール: Ares
  • 2019.04 [krebsonsecurity] RevCode WebMonitor RAT の背後にいるのは誰か?
  • 2019.04 [freebuf] Monero マイニング & 遠隔操作トロイの木馬サンプル分析
  • 2019.04 [4hou] Monero マイニング + 遠隔操作トロイの木馬サンプル分析
  • 2019.04 [4hou] LimeRAT が野生で拡散
  • 2019.04 [yoroi] LimeRAT が野生で拡散
  • 2019.04 [alexander] 2019年第6週サイバー攻撃ダイジェスト – ExileRAT トロイの木馬、Eskom グループなど
  • 2019.03 [360] トロイの木馬作者が Tatoo 遠隔操作バックドアプログラムを自ら提出
  • 2019.03 [flashpoint] FIN7 再考: Astra パネルと SQLRat マルウェアの内部
  • 2019.03 [tencent] マイニングトロイの木馬が SQL サーバーに対するブルートフォース攻撃、感染によりサーバーがリモート制御される可能性
  • 2019.03 [paloaltonetworks] Cardinal RAT が再び罪を犯し、イスラエルの Fin-Tech を標的に
  • 2019.03 [aliyun] JAVA-VBS を使用して RAT を拡散する方法の分析
  • 2019.03 [malware] 2019-03-06 - クイックポスト: 韓国のマルスパムが Flawed Ammyy RAT マルウェアを配信
  • 2019.03 [4hou] JAVA+VBS による RAT の拡散
  • 2019.03 [mcafee] JAVA-VBS 合同訓練が RAT を配信
  • 2019.02 [dodgethissecurity] 未知の RAT のリバースエンジニアリング – 仮に SkidRAT 1.0 と呼ぶ
  • 2019.02 [4hou] ExileRAT と LuckyCat が C2 インフラを共有
  • 2019.02 [freebuf] Xiaomi M365 電動スクーターがハッカー攻撃とリモート制御のリスクに直面
  • 2019.02 [myonlinesecurity] 偽のブロックチェーン認証アップデートが Dark Comet RAT を配信
  • 2019.02 [securityartwork] ケーススタディ: "Imminent RATs" (III)
  • 2019.02 [securityartwork] ケーススタディ: "Imminent RATs" (II)
  • 2019.02 [securityledger] ExileRAT マルウェアがチベット亡命政府を標的に
  • 2019.02 [securityartwork] ケーススタディ: "Imminent RATs" (I)
  • 2019.02 [talosintelligence] ExileRAT が LuckyCat と C2 を共有し、チベットを標的に
  • 2019.02 [0x00sec] リモートアクセスツールキットのプログラミング言語
  • 2019.01 [angelalonso] Fudcrypt: VBS スクリプトと Houdini マルウェアを通じて Java RAT を暗号化するサービス
  • 2019.01 [yoroi] Manuel の Java RAT の物語
  • 2019.01 [0x00sec] RAT に関する質問。長い休憩
  • 2019.01 [aliyun] AMP 技術を使用した RAT 脅威の分析
  • 2019.01 [360] Marvell Avastar Wi-Fi の脆弱性を利用したデバイスのリモート制御: ゼロ知識から RCE 脆弱性の発掘・悪用まで(下)
  • 2019.01 [aliyun] MS Word 文書を使用した .Net RAT マルウェアの拡散
  • 2019.01 [tencent] Tencent PC Manager: "大灰狼" 遠隔操作トロイの木馬が "会員資料" に偽装して拡散
  • 2019.01 [360] Marvell Avastar Wi-Fi の脆弱性を利用したデバイスのリモート制御: ゼロ知識から RCE 脆弱性の発掘・悪用まで(上)
  • 2019.01 [4hou] MS Word 文書を使用した .Net RAT マルウェアの拡散
  • 2019.01 [0x00sec] RAT 用の VPS または VPN?
  • 2019.01 [talosintelligence] AMP を使用した最近の Imminent RAT 感染の波のアンパックから学んだこと
  • 2019.01 [fortinet] MS Word 文書によって拡散される .Net RAT マルウェア
  • 2019.01 [4hou] TA505 が新しい ServHelper バックドアと FlawedGrace RAT を兵器庫に追加
  • 2019.01 [tencent] ブラウザの乗っ取り、リモート制御、動画再生回数詐欺:このクラックアクティベーションツールは有毒!
  • 2019.01 [4hou] 広告マルウェアがゲームやリモート制御アプリに偽装し、900万の Google Play ユーザーに感染
  • 2019.01 [UltraHacks] Ozone RAT C++ | Hidden VNC [チュートリアルビデオ] | Ultra Hacks
  • 2019.01 [micropoor] 高度な持続的浸透 - 第8シーズン、デモは遠隔操作
  • 2019.01 [tencent] Gorgon グループと思われる Azorult 遠隔操作トロイの木馬を使用した中国の貿易業界を標的にした標的型攻撃活動
  • 2019.01 [4hou] JungleSec ランサムウェアが IPMI リモートコンソールを通じて被害者に感染
  • 2019.01 [sans] リモートアクセスツール: ネットワーク内部の隠れた脅威
  • 2018.12 [freebuf] tRat: 複数のスパムメールキャンペーンに現れた新しいモジュール式 RAT
  • 2018.12 [k7computing] 悪質なコンボ: Agent Tesla と XpertRAT
  • 2018.12 [360] Flash 0day + Hacking Team 遠隔操作: 最新の Flash 0day 脆弱性を利用した攻撃活動と関連分析
  • 2018.12 [freebuf] Flash 0day + Hacking Team 遠隔操作: 最新の Flash 0day 脆弱性を利用した攻撃活動と関連分析
  • 2018.11 [4hou] tRat: 新しいモジュール式 RAT
  • 2018.11 [proofpoint] tRat: 複数のスパムメールキャンペーンで拡散される新しいモジュール式遠隔操作
  • 2018.11 [checkpoint] 2018年10月の最も危険なマルウェア: 初めてリモートアクセストロイの木馬がトップ10脅威に到達 | Check Point ソフトウェアブログ
  • 2018.11 [checkpoint] 2018年10月の最も危険なマルウェア: 初めてリモートアクセストロイの木馬がグローバル脅威インデックスのトップ10に到達
  • 2018.10 [DEFCONConference] DEF CON 26 カーハッキングヴィレッジ - Dan Regalado - Salinas との出会い、初の SMS コマンド型カーインフォテインメント RAT
  • 2018.10 [cybrary] 「RAT の匂いがする!」 – AhMyth、神話ではない
  • 2018.10 [4hou] 産業分野で RAT を使用して攻撃する方法
  • 2018.10 [360] 遠隔操作トロイの木馬が NetEase の公式署名を不正使用
  • 2018.10 [ncsc] RAT、Mimikatz、その他の国内害虫
  • 2018.10 [infosecinstitute] SOLDIERX の高等評議会議長 RaT へのインタビュー
  • 2018.10 [vulnerability0lab] Facebook Inc (Instagram Business 経由) - リモートアクセストークンの脆弱性 (オリジナル Facebook ビデオ)
  • 2018.10 [securityledger] エピソード 114: Facebook 侵害の根源にある複雑さ、そして LoJax は殺せない RAT
  • 2018.10 [sophos] IP EXPO Europe 2018: Sophos の専門家が AI、プライバシー vs セキュリティ、そして RAT について語る
  • 2018.09 [kaspersky] ICS における RAT の使用による脅威
  • 2018.09 [kaspersky] RAT 制御を必要とする産業ネットワーク
  • 2018.09 [securelist] ICS における RAT の使用による脅威
  • 2018.08 [traffic] [2018-08-22] Unknown->RigEK->AZORult->BabylonRAT
  • 2018.08 [freebuf] Hero RAT: Telegram ベースの Android マルウェア
  • 2018.08 [4hou] スパムメールキャンペーンが SettingContent-ms を悪用して FlawedAmmyy RAT を配信
  • 2018.08 [aliyun] Telegram ベースの Android マルウェア HeroRAT の分析
  • 2018.08 [alienvault] パキスタンを標的とした既製の RAT
  • 2018.07 [k7computing] 武器化された .IQY: FlawedAmmyy RAT を配信する探求
  • 2018.07 [trendmicro] SettingContent-ms を悪用したスパムキャンペーン、Necurs が配布するものと同じ FlawedAmmy RAT をドロップ
  • 2018.07 [k7computing] 武器化された .IQY: FlawedAmmyy RAT を配信する探求
  • 2018.07 [4hou] 高度に複雑な寄生虫 RAT がダークウェブに出現
  • 2018.07 [proofpoint] Parasite HTTP RAT がステルスなトリックのシチューを作る
  • 2018.07 [aliyun] Vermin RAThole の詳細分析
  • 2018.07 [proofpoint] TA505 が PDF ファイル内の SettingContent-ms を悪用して FlawedAmmyy RAT を配布
  • 2018.07 [welivesecurity] Vermin: ウクライナ政府機関をスパイするために使用された3つの RAT のうちの1つ
  • 2018.07 [freebuf] HeroRAT: まったく新しい Telegram ベースの Android リモートアクセストロイの木馬
  • 2018.06 [heimdalsecurity] セキュリティアラート: 新しいスパムキャンペーンが Flawed Ammyy RAT を配信し、被害者のコンピュータに感染
  • 2018.06 [welivesecurity] HeroRAT: Telegram ベースの Android 遠隔操作、Xamarin フレームワークで記述
  • 2018.06 [4hou] 米国政府の最新技術警報: 北朝鮮ハッカーグループ Hidden Cobra が使用している2つの RAT とワームウイルスに警戒
  • 2018.06 [4hou] NavRAT が米朝首脳会談を韓国攻撃の餌として利用
  • 2018.06 [360] NavRAT が米朝会談の話題を利用して韓国を攻撃
  • 2018.05 [talosintelligence] NavRAT が米朝首脳会談を韓国での攻撃のデコイとして使用
  • 2018.05 [myonlinesecurity] Necurs が IQY Excel Web クエリファイルを介して Flawed Ammy RAT を配信
  • 2018.05 [freebuf] ハッキングされた Drupal サイトがマイニング、遠隔操作の拡散、詐欺メールの送信に使用される
  • 2018.05 [andreafortuna] マルウェア VM 検出技術の進化: GravityRAT の分析
  • 2018.05 [360] GravityRAT: インドを APT 標的にした2年間の進化の歴史
  • 2018.05 [pcsxcetrasupport3] "NetSupport" (Rat) トップ2レイヤーを詳しく見る
  • 2018.05 [freebuf] 神話伝説: アカウント販売を通じて WeChat グループで拡散される遠隔操作トロイの木馬
  • 2018.04 [virusbulletin] GravityRAT マルウェアがシステムの温度を測定する
  • 2018.04 [360] 神話伝説——アカウント販売の WeChat グループを通じて拡散される遠隔操作トロイの木馬
  • 2018.04 [talosintelligence] GravityRAT - インドを標的にした APT の2年間の進化
  • 2018.04 [UltraHacks] WebMonitor RAT - ポートフォワーディング不要 + 無料 VPN 新機能
  • 2018.04 [4hou] チキンゲーム補助遠隔操作トロイの木馬分析
  • 2018.04 [freebuf] チキンゲーム補助遠隔操作トロイの木馬分析
  • 2018.04 [360] チキンゲーム補助遠隔操作トロイの木馬分析
  • 2018.04 [4hou] Digital Ocean を利用した遠隔操作インフラの構築
  • 2018.04 [flashpoint] RAT が暴走: ARS VBS ローダーとの出会い
  • 2018.04 [lookout] mAPT ViperRAT が Google Play で発見される
  • 2018.04 [bitdefender] RadRAT: 複雑なスパイ活動のためのオールインワンツールキット
  • 2018.04 [paloaltonetworks] "チーズ"と言え: WebMonitor RAT が C2-as-a-Service として登場
  • 2018.04 [freebuf] DELPHI ハッカー向けプログラミング(三): 簡易遠隔操作の原理実装
  • 2018.04 [fireeye] 偽のソフトウェアアップデートが NetSupport リモートアクセスツールを悪用
  • 2018.04 [freebuf] PowerShell-RAT: Python ベースのバックドアプログラム
  • 2018.03 [UltraHacks] Spynote v5.8 Android RAT | チュートリアル | www.ultrahacks.org | Ultra Hacks
  • 2018.03 [360] TeleRAT: Telegram を利用してイランのユーザーを標的にする Android マルウェアが再び発見される
  • 2018.03 [paloaltonetworks] TeleRAT: Telegram の Bot API を悪用してイランを標的にする別の Android トロイの木馬
  • 2018.03 [4hou] Samsung SmartCam カメラに10以上のセキュリティ脆弱性が発見され、リモート制御や映像改ざんが可能に
  • 2018.03 [360] OS X 上の Coldroot RAT クロスプラットフォームバックドアの詳細分析
  • 2018.03 [freebuf] フロントエンドのブラックマジック: アドレスバーのリモート制御
  • 2018.03 [broadanalysis] EiTest キャンペーン: Hoefler Text ポップアップが NetSupport Manager RAT を配信
  • 2018.03 [leavesongs] フロントエンドのブラックマジック: アドレスバーのリモート制御
  • 2018.03 [broadanalysis] 偽の Flash アップデートが NetSupport RAT につながる
  • 2018.03 [broadanalysis] EiTest キャンペーン: Hoefler Text ポップアップが NetSupport Manager RAT を配信
  • 2018.03 [4hou] 高画質で無修正!ホラー映画よりも刺激的!「怪人形」遠隔操作のこの戦慄の曲を聴け
  • 2018.03 [freebuf] 高画質で無修正!ホラー映画よりも刺激的!「怪人形」遠隔操作のこの戦慄の曲を聴け
  • 2018.03 [360] 臆病者は入るな!ホラー映画よりも刺激的!「怪人形」遠隔操作のこの戦慄の曲を聴け
  • 2018.02 [broadanalysis] 偽の Flash アップデートが NetSupport RAT につながる
  • 2018.02 [broadanalysis] EiTest キャンペーン: Hoefler Text ポップアップが NetSupport Manager RAT を配信
  • 2018.02 [myonlinesecurity] 偽の DHL 通知が何らかの Java RAT を配信
  • 2018.02 [4hou] 新しい AndroRAT の亜種が期限切れの Root 脆弱性を利用して攻撃を仕掛ける
  • 2018.02 [objective] 検出されない (OSX)Coldroot RAT を解体する
  • 2018.02 [trendmicro] 新しい AndroRAT が古い特権昇格の脆弱性を悪用し、永続的なルート化を可能にする
  • 2018.02 [360] 遠隔操作トロイの木馬が巧妙に「白加黒」トラップを仕掛ける:ネットショップ卸売業者を狙い金銭を詐取
  • 2018.01 [broadanalysis] EiTest キャンペーン: Hoefler Text ポップアップが NetSupport Manager RAT を配信
  • 2018.01 [4hou] Blizzard ゲームに深刻なリモート制御脆弱性、数億人のユーザーが影響を受ける
  • 2018.01 [riskiq] スパイ活動キャンペーンがトルコの防衛請負業者を標的に、スピアフィッシングと RAT を利用
  • 2018.01 [freebuf] NDAY 脆弱性 CVE-2017-11882 と 0Day 脆弱性 CVE-2018-0802 の組み合わせによる遠隔操作トロイの木馬拡散のサンプル分析
  • 2018.01 [broadanalysis] EiTest キャンペーン: Hoefler Text ポップアップが NetSupport Manager RAT を配信
  • 2018.01 [netskope] ここで RAT を入手!
  • 2018.01 [redcanary] RAT の匂いを嗅ぐ: ユーザーをすり抜けたリモートアクセストロイの木馬の検出
  • 2018.01 [rsa] マルスパムが BITTER RAT を配信 2018年1月7日
  • 2018.01 [freebuf] モバイル C# ウイルス「再起」、有名アプリの通信を利用した遠隔操作によるプライバシー窃取
  • 2017.12 [tencent] CHM ファイルを介して拡散される Torchwood 遠隔操作トロイの木馬の分析
  • 2017.12 [avlsec] モバイル C# ウイルス「再起」、有名アプリの通信を利用した遠隔操作によるプライバシー窃取
  • 2017.12 [broadanalysis] 偽の Flash Player アップデートが Net Support RAT を配信
  • 2017.12 [netskope] TelegramRAT がクラウドを介して従来の防御を回避
  • 2017.12 [4hou] Palo Alto Networks が新たに発見: UBoatRAT 遠隔操作プログラムが東アジアに侵入
  • 2017.12 [TechnoHacker] RAT を簡単に説明
  • 2017.11 [paloaltonetworks] UBoatRAT が航行する
  • 2017.11 [buguroo] ブラジルの新しいバンキングマルウェア - XPCTRA RAT 分析
  • 2017.11 [traffic] [2017-11-18] KaiXinEK->RAT
  • 2017.11 [freebuf] CHM ファイルを介して拡散される Torchwood 遠隔操作トロイの木馬の分析
  • 2017.11 [qq] CHM ファイルを介して拡散される Torchwood 遠隔操作トロイの木馬の分析
  • 2017.11 [TechnicalMujeeb] A-RAt エクスプロイトツール Termux アプリを使用した Android リモートアクセス
  • 2017.11 [securityintelligence] AutoIt スクリプトを使用して AV 検出をバイパスする遠隔操作の分析
  • 2017.11 [360] Powershell Empire が AV をバイパスして遠隔操作を実現
  • 2017.10 [riskiq] 新しい htpRAT が中国の脅威アクターに完全なリモート制御機能を提供
  • 2017.10 [lookout] JadeRAT モバイルスパイウェアがスパイ活動で急増
  • 2017.10 [buguroo] 機能する銀行顧客向け RAT 保護
  • 2017.10 [cylance] Cylance vs. Hacker's Door リモートアクセストロイの木馬
  • 2017.10 [malwarebytes] 「正常な」Word 文書が起動時に悪意のある RTF ファイル(CVE-2017-8759 を利用)をダウンロードし、さらにその RTF ファイルが最終的なペイロードをダウンロード実行する
  • 2017.10 [rsa] マルスパムが HWorm RAT を配信 2017年10月
  • 2017.09 [freebuf] 【コメント更新「トロイの木馬」作者の返信】「大黄蜂」遠隔操作マイニングトロイの木馬の分析と追跡
  • 2017.09 [intezer] Agent.BTZ/ComRAT の亜種分析
  • 2017.09 [360] "EternalBlue" 脆弱性を利用して拡散する RAT の分析
  • 2017.09 [UltraHacks] SilentBytes RAT 1.6.3c | マルチ管理ツール!
  • 2017.09 [freebuf] カマキリが蝉を捕り、黄雀が後ろにいる:無料で配布される Cobian 遠隔操作ツールの背後にある秘密
  • 2017.09 [360] 他人のワイヤレスマウスをリモート制御する方法:マウス乗っ取りの内部を徹底解説
  • 2017.09 [4hou] 「フィッシング」プラグインの実践:不注意な開発者のエディタを遠隔操作に変える方法
  • 2017.09 [fortinet] ベトナムの組織を標的にした APT 攻撃で使用された Rehashed 遠隔操作の分析
  • 2017.09 [TechnoHacker] Arcom RAT: 3000ドルの価値はあるか?
  • 2017.08 [lookout] Android 遠隔操作 xRAT
  • 2017.08 [paloaltonetworks] カンボジアで使用された更新版 KHRAT マルウェア
  • 2017.08 [JackkTutorials] HTTP RAT の作り方 (#3)
  • 2017.08 [freebuf] 遠隔操作トロイの木馬がホワイトリスト利用の神技を披露:偽のクラックツールの背後にある不正利用の暗流を暴露
  • 2017.08 [4hou] 遠隔操作トロイの木馬がホワイトリスト利用の神技を披露:偽のクラックツールの背後にある不正利用の暗流を暴露
  • 2017.08 [fortinet] 新しい KONNI RAT の亜種を簡単に紹介
  • 2017.08 [freebuf] Photoshop をリモート制御ツール(RAT)に改造して悪用する方法
  • 2017.08 [n0where] Koadic C3 COM Command & Control – JScript RAT
  • 2017.08 [cylance] 脅威スポットライト: KONNI – ステルスなリモートアクセストロイの木馬
  • 2017.08 [cylance] Cylance vs. KONNI RAT
  • 2017.08 [intezer] Agent.BTZ/ComRAT の新しい亜種が発見される:2008年にペンタゴンを襲った脅威は今も進化中;パート 1/2
  • 2017.08 [rsa] マルスパムが Xtreme RAT を配信 2017年8月1日
  • 2017.07 [CodeColorist] Photoshop をリモートアクセスツールに変える方法
  • 2017.07 [pentestmag] Stitch – Python で書かれたクロスプラットフォーム RAT
  • 2017.07 [freebuf] 【BlackHat 2017】Xiaomi 9号バランス車の国際版に深刻なセキュリティ脆弱性、攻撃者によるリモート制御が可能
  • 2017.07 [pentestingexperts] AhMyth Android RAT を使用した Android スマートフォンのハッキング
  • 2017.07 [JackkTutorials] HTTP RAT の作り方 (#2)
  • 2017.07 [ringzerolabs] Bladabindi RAT
  • 2017.07 [krebsonsecurity] GovRAT の作者と Mirai ボットマスター 'Bestbuy' は誰か?
  • 2017.07 [JackkTutorials] HTTP RAT の作り方 (#1)
  • 2017.06 [freebuf] ホワイトリスト利用の集大成:新型遠隔操作トロイの木馬が移形換影の技を披露
  • 2017.06 [pediy] [オリジナル]遠隔操作トロイの木馬の行動分析
  • 2017.06 [ColinHardy] RAT をドロップする JavaScript - プロのようにリバースエンジニアリング
  • 2017.06 [4hou] ホワイトリスト利用の集大成:新型遠隔操作トロイの木馬が移形換影の技を披露
  • 2017.06 [360] ホワイトリスト利用の集大成:新型遠隔操作トロイの木馬が移形換影の技を披露
  • 2017.06 [freebuf] Metasploit 実験:検知回避ペイロードの作成 + 任意の「外部」ホストへの遠隔操作
  • 2017.06 [cylance] Cylance vs. FF-Rat マルウェア
  • 2017.06 [cylance] 脅威スポットライト: FF-Rat マルウェアの分析
  • 2017.06 [alienvault] Mac プラットフォーム初の MaaS(マルウェア・アズ・ア・サービス)マルウェア MacSpy の分析
  • 2017.05 [TechnoHacker] 10秒で RAT に感染しているかどうかを確認する方法
  • 2017.05 [freebuf] 遠隔操作トロイの木馬の中の VIP:ネットショッピングアカウントを不正利用して仮想ギフトカードを購入
  • 2017.05 [pediy] [オリジナル]0から古典的な感染型遠隔操作トロイの木馬を分析
  • 2017.05 [4hou] 遠隔操作トロイの木馬の中の VIP:ネットショッピングアカウントを不正利用して仮想ギフトカードを購入
  • 2017.05 [sec] 遠隔操作トロイの木馬の中の VIP:ネットショッピングアカウントを不正利用して仮想ギフトカードを購入
  • 2017.05 [360] 遠隔操作トロイの木馬の中の VIP:ネットショッピングアカウントを不正利用して仮想ギフトカードを購入
  • 2017.05 [aliyun] FlexiSpy For Android リモート制御バックドア
  • 2017.05 [UltraHacks] Imminent Monitor RAT セットアップ & 2017年の新アップデートレビュー
  • 2017.05 [TechnoHacker] RAT を拡散する方法
  • 2017.05 [esecurityplanet] Shodan が Recorded Future と提携してボットネットと RAT を検出
  • 2017.04 [alienvault] Felismus RAT: 強力な脅威、謎の目的
  • 2017.04 [4hou] 20以上の Linksys ルーターにセキュリティ脆弱性が発見され、リモート制御の可能性
  • 2017.04 [freebuf] 注意、Android 遠隔操作(spynote)がアップグレードされました...
  • 2017.04 [paloaltonetworks] Cardinal RAT が2年以上活動
  • 2017.04 [jpcert] RedLeaves - オープンソース RAT に基づくマルウェア
  • 2017.03 [TechnoHacker] HTTP ボットネットと RAT の違いは?
  • 2017.03 [paloaltonetworks] Trochilus と新しい MoonWind RAT がタイの組織を攻撃するために使用される
  • 2017.03 [fireeye] WMImplant – PowerShell で開発された WMI ベースのエージェントレスなポストエクスプロイテーション RAT
  • 2017.03 [4hou] CIA 事件の余波:300種類以上の Cisco スイッチが影響を受け、1つの0day でリモート制御が可能に
  • 2017.03 [secist] Python ベースのリモート管理ツール(RAT) – Stitch
  • 2017.03 [trendmicro] MajikPOS の紹介:PoS マルウェアと RAT の融合
  • 2017.03 [4hou] Proton RAT が0day 脆弱性を利用して新しい亜種にアップグレード、最低1200ドルで販売
  • 2017.02 [UltraHacks] SilentBytes RAT [ベータ] Windows 10 || プロモーション ||
  • 2017.02 [UltraHacks] SilentBytes RAT Linux Ubuntu || プロモーション ||
  • 2017.02 [UltraHacks] SilentBytes RAT 1.1 [ベータ] Mac OS X || プロモーション ||
  • 2017.02 [lookout] ViperRAT: イスラエル国防軍を標的にしたモバイル APT がレーダーに映るべき理由
  • 2017.02 [talosintelligence] Go RAT が出動!AthenaGo が "TorWords" ポルトガルを狙う
  • 2017.02 [netskope] デコイ、RAT、クラウド:増加するトレンド
  • 2017.01 [malwarebytes] Mobile Menace Monday: AndroRAT の進化
  • 2017.01 [malwarebytes] 偽のウォレットから Java RAT へ
  • 2016.12 [TechnoHacker] 他人の PC で RAT をリモート実行する方法
  • 2016.12 [cyber] 城の中の王たち パート4 – パッカー、クリプター、そして RAT の群れ
  • 2016.11 [] Linux 遠隔操作の分析
  • 2016.11 [] Linux 遠隔操作の分析
  • 2016.11 [f] 米国大統領選挙のための RAT
  • 2016.11 [fidelissecurity] Houdini の RAT で H-W0rm の穴を下る
  • 2016.11 [4hou] Pastebin にホストされた RAT トロイの木馬がシステムのブルースクリーンを引き起こす
  • 2016.10 [malwarebytes] Pastebin で RAT を入手
  • 2016.10 [8090] Huawei P9 の指紋ロックがクラックされ、リモート制御ソケットが微博を投稿、スマート製品のセキュリティ問題が懸念される
  • 2016.10 [sentinelone] GovRAT は新しいものではない
  • 2016.10 [UltraHacks] [$25] Imminent Monitor RAT セットアップ
  • 2016.09 [securelist] TeamXRat: ブラジルのサイバー犯罪がランサムウェアに出会う
  • 2016.09 [freebuf] 遠隔操作アカウント窃取トロイの木馬が 850Game に偽装して悪行
  • 2016.09 [jimwilbur] DroidJack – Android RAT の簡単な紹介
  • 2016.09 [360] 遠隔操作アカウント窃取トロイの木馬が 850Game に偽装して悪行
  • 2016.09 [countercept] RAT の匂いを嗅ぐ?
  • 2016.09 [countercept] RAT の匂いを嗅ぐ?
  • 2016.09 [freebuf] You dirty RAT:地下ネット犯罪世界の「黒い黒を食べる」
  • 2016.08 [fortinet] ドイツ語話者が Ozone RAT につながるスパムの標的に
  • 2016.08 [freebuf] WeChat にリモート任意コード実行の脆弱性が発見され、リモート制御が可能に
  • 2016.08 [trustlook] Trustlook がリモート管理ツール(RAT)の Android マルウェアを発見
  • 2016.08 [id] XRat、Team、Corporacao
  • 2016.08 [f] NanHaiShu: 南シナ海を RAT する
  • 2016.07 [malwarenailed] Luminosity RAT - 再利用
  • 2016.07 [360] 合法的な外見をまとった遠隔操作トロイの木馬——Game564 の詳細分析
  • 2016.07 [fidelissecurity] Barncat で RAT を追跡
  • 2016.07 [n0where] Python リモートアクセスツール: Ares
  • 2016.07 [360] H-WORM: シンプルで活発な遠隔操作トロイの木馬
  • 2016.06 [duo] コンピュータへのリモートアクセスの保護: RDP 攻撃と販売されるサーバー認証情報
  • 2016.06 [cybereason] 実行許可: 署名され検証された RAT のインシデント
  • 2016.06 [8090] 標的型攻撃に使用される JavaScript 遠隔操作トロイの木馬の分析
  • 2016.06 [hackingarticles] HTTP RAT 初心者向けチュートリアル
  • 2016.06 [avlsec] 有名アプリを装って悪意のあるモジュールを埋め込む、羊の皮をかぶった狼が来た! WarThunder リモート制御トロイの木馬の警告
  • 2016.06 [cysinfo] Volatility プラグインを使用してメモリ内の APT RAT 9002 を追跡
  • 2016.06 [f] Qarallax RAT: 米国ビザ申請者をスパイ
  • 2016.06 [qq] 遠隔操作トロイの木馬が Windows システムファイルの脆弱性を利用して攻撃
  • 2016.06 [samvartaka] 死んだ RAT: マルウェア C2 サーバーの悪用
  • 2016.05 [freebuf] 深層: 遠隔操作トロイの木馬 Poison Ivy がミャンマーや他のアジア諸国で猛威を振るう
  • 2016.05 [trendmicro] Lost Door RAT: アクセス可能でカスタマイズ可能な攻撃ツール
  • 2016.04 [pentestpartners] Steam Workshop を RAT する
  • 2016.04 [freebuf] DameWare ミニリモートコントロールの脆弱性(CVE-2016-2345):リモートコントローラを使いこなす