Skip to content
KitploitKITPLOIT
도구블로그
제출
도구블로그
제출

해킹, 침투 테스트 및 사이버 보안 도구를 당신의 보안 무기고에!

Kitploit은 해킹, 사이버 보안 및 침투 테스트 도구 디렉토리입니다. 최신 프로젝트 업데이트를 발견하여 취약점을 찾고, 시스템을 분석하고, 테스트를 자동화하고, 보안을 강화하세요.

··피드·문의·개인정보·© 2026 Kitploit

도구 디렉토리

카테고리

모든 카테고리 보기
Loading categories
awesome-rat — RAT 및 C&C 리소스. 250+ 오픈소스 프로젝트, 1200+ RAT/C&C 블로그/비디오. | Kitploit
도구/GitHubGitHub/alphaseclab/awesome-rat
Post-ExploitationMalware AnalysisPenetration TestingCommand and ControlPapers & ResearchLearning & EducationRed TeamingCurated ResourcesRemote Access Tool
GitHubalphaseclab/awesome-rat

awesome-rat

RAT 및 C&C 리소스. 250+ 오픈소스 프로젝트, 1200+ RAT/C&C 블로그/비디오.

2.2k477266년 전Kitploit 검토 완료

인기

모두 보기 →

커뮤니티에서 가장 많이 사용되는 도구를 찾아보세요.

모든 도구 탐색

도구 컬렉션을 둘러보세요

모든 도구 보기 →
저장소 보기
공유

모든 수집 프로젝트

RAT

  • 250개 이상의 오픈소스 원격 제어/C&C 도구, 1200개 이상의 RAT 분석 보고서\C&C 관련 기사 등.
  • English Version

목차

  • 오픈소스 도구
    • pupy -> (1)도구 (6)문서
    • Covenant -> (3)도구 (18)문서
    • Slackor -> (1)도구 (3)문서
    • QuasarRAT -> (1)도구 (9)문서
    • EvilOSX -> (1)도구 (9)문서
    • Merlin -> (1)도구 (3)문서
  • 상용 소프트웨어
    • Team Viewer -> (7)도구
(34)문서
  • 악성 소프트웨어(일부)
    • Gh0st -> (5)도구 (23)문서
    • NanoCore -> (1)도구 (32)문서
    • NjRat -> (4)도구 (20)문서
    • Revenge RAT -> (1)도구 (9)문서
    • PlugX -> (1)도구 (40)문서
    • (25) RemcosRAT
    • (3) L0rdixRAT
    • (1) LodaRAT
    • (9) GulfRAT
    • (14) NetWireRAT
    • (1) JhoneRAT
    • (2) Dacls
    • (1) BlackRemote
    • (17) Orcus
    • (1) NukeSped
    • (21) DarkComet
    • (1) WarZone RAT
    • (16) BlackShades
    • (1) DenesRAT
    • (4) WSH RAT
    • (2) Qrypter RAT
    • (20) Adwind
    • (1) CannibalRAT
    • (3) jRAT
    • (5) jsRAT
    • (4) CrossRat
    • (1) ArmaRat
    • (6) RokRAT
    • (1) CatKARAT
    • (5) TheFatRat
    • (2) OmniRAT
    • (6) LuminosityLink
    • (477) 기타
  • 공개 서비스 활용
    • Telegram -> (3)도구 (2)문서
    • Twitter -> (2)도구 (6)문서
    • GMail -> (3)도구 (8)문서
    • Github -> (1)도구 (5)문서
    • DropBox -> (1)도구 (3)문서
    • 블록체인 -> (2)도구 (1)문서
    • 기타 -> (15)도구 (5)문서
  • 통신 프로토콜
    • DNS 프로토콜
      • (9) 도구
      • (18) 문서
      • Domain Generation Algorithm(DGA) -> (14)도구 (42)문서
    • ICMP -> (5)문서
    • WebSocket -> (2)도구 (5)문서
  • C&C
    • Cobalt Strike -> (14)도구 (8)문서
    • 도구
      • (64) 새로 추가됨
    • 문서
      • (258) 새로 추가됨
  • 원격 제어
    • 도구
      • (9) Android
      • (5) Linux
      • (17) Windows
      • (4) Apple
      • (90) 새로 추가됨
    • 문서
  • 오픈소스 도구


    pupy

    도구

    • [5265⭐][1m] [Py] n1nj4sec/pupy Python으로 작성된 원격 제어, 후침투 도구, 크로스 플랫폼 (Windows, Linux, OSX, Android)

    문서

    • 2020.01 [TheCyberWire] PupyRAT is back. So is the Konni Group. Twitter storm over claims that MBS hacked Jeff Bezos....
    • 2019.03 [hackingarticles] Command & Control Tool: Pupy
    • 2017.11 [chokepoint] Pupy as a Metasploit Payload
    • 2017.10 [boredhackerblog] Pupy shell over Tor
    • 2017.02 [n0where] Open Source Cross Platform RAT: Pupy
    • 2015.10 [hackingarticles] Hack Remote PC using Pupy – Remote Administration Tool

    Covenant

    도구

    • [1147⭐][6d] [C#] cobbr/covenant Covenant is a collaborative .NET C2 framework for red teamers.
    • [95⭐][9d] [C#] cobbr/elite Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack surface of .NET, make the use of offensive .NET tradecraft easier, and serve as a collaborative command and control platform for red teamers.
    • [31⭐][4m] [C#] cobbr/c2bridge C2Bridges allow developers to create new custom communication protocols and quickly utilize them within Covenant.

    문서

    • 2020.01 [csis] Embedding external DLLs into Covenant Tasks
    • 2020.01 [hakin9] Covenant the .NET based C2 on Kali Linux | by Dan Dieterle
    • 2019.12 [cyberarms] Covenant the .NET based C2 on Kali Linux
    • 2019.12 [rastamouse] Covenant Tasks 101
    • 2019.12 [rsa] Using RSA NetWitness to Detect C&C: Covenant
    • 2019.11 [4hou] Covenant 활용 분석
    • 2019.11 [3gstudent] Covenant 활용 분석
    • 2019.10 [cobbr] Covenant: Developing Custom C2 Communication Protocols
    • 2019.10 [specterops] Covenant: Developing Custom C2 Communication Protocols
    • 2019.09 [freebuf] Covenant: 레드팀을 위한 .NET 명령줄 제어 프레임워크
    • 2019.09 [stealthbits] Setup, Configuration, and Task Execution with Covenant: The Complete Guide
    • 2019.08 [stealthbits] Next-Gen Open Source C2 Frameworks in a Post PSEmpire World: Covenant
    • 2019.08 [rastamouse] Covenant, Donut, TikiTorch
    • 2019.08 [cobbr] Covenant: The Usability Update
    • 2019.08 [specterops] Covenant: The Usability Update
    • 2019.02 [cobbr] Entering a Covenant: .NET Command and Control
    • 2019.02 [rvrsh3ll] Entering a Covenant: .NET Command and Control
    • 2019.01 [specterops] Entering a Covenant: .NET Command and Control

    Slackor

    도구

    • [332⭐][12d] [Py] coalfire-research/slackor A Golang implant that uses Slack as a command and control server

    문서

    • 2019.09 [freebuf] Slackor: Go 언어로 작성된 C&C 서버
    • 2019.08 [freebuf] Slackor: Slack을 명령 제어 서버로 사용하는 방법
    • 2019.06 [n00py] Introducing Slackor, a Remote Access Tool Using Slack as a C2 Channel

    QuasarRAT

    도구

    • [2932⭐][10m] [C#] quasar/quasarrat Remote Administration Tool for Windows

    문서

    • 2019.10 [UltraHacks] QuasarRAT [Free Download] | [TUTORIAL VIDEO] | Ultra Hacks
    • 2018.09 [malwarebytes] Buggy implementation of CVE-2018-8373 vulnerability used to deliver Quasar RAT
    • 2018.03 [4hou] 매크로 코드를 이용한 NetwiredRC 및 Quasar RAT 전파 RTF 문서 심층 분석
    • 2018.01 [paloaltonetworks] VERMIN: Quasar RAT and Custom Malware Used I
    • 2017.12 [HackerSploit] QuasarRAT - The Best Windows RAT? - Remote Administration Tool for Windows
    • 2017.11 [n0where] Free, Open-Source Remote Administration Tool for Windows: QuasarRAT
    • 2017.10 [TechnoHacker] Quasar RAT review
    • 2017.10 [rsa] MalSpam Delivers RAT SpyWare Quasar 9-27-2017
    • 2017.01 [paloaltonetworks] Downeks and Quasar RAT Used in Recent Targeted Attacks Against Go

    EvilOSX

    도구

    • [1376⭐][2y] [Py] marten4n6/evilosx An evil RAT (Remote Administration Tool) for macOS / OS X.

    문서

    • 2019.07 [hackingarticles] EvilOSX-RAT for MacOS/OSX
    • 2019.06 [NullByte] Take Control Over MacOS Computers with EvilOSX [Tutorial]
    • 2018.08 [freebuf] EvilOSX: 강력한 macOS 원격 관리 도구(RAT)
    • 2018.07 [pentesttoolz] EvilOSX – Evil Remote Administration Tool (RAT) for macOS/OS X – Kali Linux 2018.2
    • 2018.06 [n0where] Pure python post-exploitation RAT for macOS & OSX: EvilOSX
    • 2018.03 [applehelpwriter] defending against EvilOSX, a python RAT with a twist in its tail
    • 2018.03 [binarydefense] EvilOSX - Binary Defense
    • 2018.03 [binarydefense] EvilOSX
    • 2017.11 [NullByte] EvilOSX RAT - How to build a payload and start a server

    Merlin

    도구

    • [2568⭐][6m] [Go] ne0nd0g/merlin Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

    문서

    • 2019.03 [hackingarticles] Command and Control Guide to Merlin
    • 2018.02 [lockboxx] Merlin for Red Teams
    • 2017.12 [n0where] Cross-Platform Post-Exploitation HTTP/2 Command & Control Server: Merlin

    상용 소프트웨어


    Team Viewer

    도구

    • [405⭐][2y] [C++] vah13/extracttvpasswords tool to extract passwords from TeamViewer memory using Frida
    • [277⭐][2y] [C++] gellin/teamviewer_permissions_hook_v1 A proof of concept injectable C++ dll, that uses naked inline hooking and direct memory modification to change your TeamViewer permissions.
    • [175⭐][9d] uknowsec/sharpdecryptpwd Windows 시스템에 저장된 비밀번호를 해석하는 도구: Navicat, TeamViewer, FileZilla, WinSCP, Xmanager 시리즈 제품 (Xshell, Xftp) 포함.
    • [59⭐][2y] [Py] attackercan/teamviewer-dumper 메모리에서 TeamViewer ID 및 비밀번호 덤프
    • [42⭐][6d] [C#] v1v1/decryptteamviewer Enumerate and decrypt TeamViewer credentials from Windows registry
    • [36⭐][5y] [C++] kkar/teamviewer-dumper-in-cpp Dumps TeamViewer ID,Password and account settings from a running TeamViewer instance by enumerating child windows.
    • [25⭐][5m] [C++] dydtjr1128/remoteassistance-cpp [WIP]RemoteAssistance like TeamViewer(C++)

    문서- 2020.02 [yoroi] Importante Vulnerabilità su TeamViewer

    • 2020.01 [freebuf] “正版”监控软件被黑产利用,输出把关不严或成另一个TeamViewer?
    • 2019.11 [sessionstack] TeamViewer, and Alternative Remote Access and Web Conferencing Solutions, Through the Lens of Customer Service
    • 2019.10 [threatbook] “TeamViewer被黑门”是确有其事还是夸大其词?别慌!一文看懂应对方法
    • 2019.10 [freebuf] TeamViewer据称“被入侵”事件的研判及结论
    • 2019.04 [4hou] 利用木马化TeamViewer针对多个国家政府机构的攻击行动
    • 2019.04 [0x00sec] Port 5900 open on a MAC that used Teamviewer, trying to access it
    • 2018.09 [blackmoreops] Install TeamViewer on Kali Linux 2018
    • 2018.08 [freebuf] 你下载的TeamViewer13破解版可能有毒
    • 2018.08 [4hou] 使用RMS和TeamViewer攻击工业公司
    • 2018.08 [kaspersky] Attacks on industrial enterprises using RMS and TeamViewer
    • 2018.08 [securelist] Attacks on industrial enterprises using RMS and TeamViewer
    • 2017.12 [4hou] TeamViewer 13.0.5058中的权限漏洞测试
    • 2017.12 [3gstudent] TeamViewer 13.0.5058中的权限漏洞测试
    • 2017.12 [3gstudent] TeamViewer 13.0.5058中的权限漏洞测试
    • 2017.12 [malwarebytes] Use TeamViewer? Fix this dangerous permissions bug with an update
    • 2017.11 [360] 基于TeamViewer的瞄准小公司的远控木马分析
    • 2017.08 [freebuf] 利用Frida从TeamViewer内存中提取密码
    • 2017.04 [4hou] 深入了解恶意软件如何滥用TeamViewer?
    • 2017.02 [4hou] TeamSpy又回来了,TeamViewer变成了它的攻击载体
    • 2016.12 [trendmicro] New SmsSecurity Variant Roots Phones, Abuses Accessibility Features and TeamViewer
    • 2016.10 [broadanalysis] Rig Exploit Kit via EITEST delivers malicious payload and TeamViewer Remote Control
    • 2016.06 [trendmicro] Unsupported TeamViewer Versions Exploited For Backdoors, Keylogging
    • 2016.06 [] 运用最广的远控-TeamViewer被黑了
    • 2016.06 [radware] Has TeamViewer Been Hacked?
    • 2016.06 [fortinet] Threat Landscape Perspectives: TeamViewer Attack – Spy vs. Spy Misdirection?
    • 2016.03 [privacy] Surprise, Hackers Use TeamViewer to Spread Ransomware
    • 2015.08 [volatility] Recovering TeamViewer (and other) Credentials from RAM with EditBox
    • 2015.06 [] 获取运行中的TeamViewer的账号和密码
    • 2014.05 [trendmicro] Remote Help for Family and Friends – Part 1: Installing and Using TeamViewer
    • 2014.02 [webroot] Managed TeamViewer based anti-forensics capable virtual machines offered as a service
    • 2014.01 [robert] Howto install Teamviewer 9.x on Ubuntu >= 12.04 64bit (in my case 13.10)
    • 2013.05 [security] Installing Teamviewer 8 on Kali 64bit (Debian)
    • 2013.03 [securelist] The TeamSpy Crew Attacks – Abusing TeamViewer for Cyberespionage

    악성코드(일부)


    Gh0st

    도구

    • [301별][7d] [C++] yuanyuanxiang/simpleremoter gh0st 기반 원격 제어기: 터미널 관리, 프로세스 관리, 창 관리, 원격 데스크톱, 파일 관리, 음성 관리, 비디오 관리, 서비스 관리, 레지스트리 관리 등 기능 구현
    • [273별][7y] [C++] sin5678/gh0st a open source remote administrator tool
    • [91별][6y] [C++] igh0st/gh0st3.6_src
    • [90별][1m] [C++] zibility/remote Gh0st 소스 코드를 참고하여 구현한 PC 원격 지원 소프트웨어로, 원격 셸, 파일 관리, 데스크톱 관리, 메시지 전송 등의 기능 제공.
    • [21별][5m] [C++] holmesian/gh0st-light 간소화된 구버전

    문서

    • 2020.01 [z3roTrust] Becoming Untraceable - 12.0_Gh0st_Us3r.dll
    • 2020.01 [rsa] Detecting Gh0st RAT in the RSA NetWitness Platform
    • 2019.06 [binarydefense] Gh0stCringe (Formerly CirenegRAT) - Binary Defense
    • 2019.03 [alienvault] The odd case of a Gh0stRAT variant
    • 2018.11 [trendmicro] 기계 학습을 사용하여 Gh0st 원격 제어 변종 악성 네트워크 데이터 흐름 분류
    • 2018.08 [traffic] [2018-08-12] KaiXinEK->Gh0stRAT
    • 2018.07 [traffic] [2018-07-16] KaiXinEK->Gh0stRAT
    • 2018.07 [inquest] Field Notes: Malicious HFS Instances Serving Gh0stRAT
    • 2018.07 [360] 원격 제어 트로이목마 Gh0st RAT 샘플의 초기 분석
    • 2018.05 [id] CryptGh0st
    • 2018.05 [freebuf] Gh0st RAT 변종 네트워크 데이터 디코딩
    • 2018.04 [freebuf] Gh0st/대회랑 RAT 계열 통신 프로토콜 분석
    • 2018.04 [360] Gh0st/대회랑 RAT 계열 통신 프로토콜 분석
    • 2017.12 [traffic] [2017-12-06] KaiXinEK->Gh0stRAT
    • 2016.06 [cysinfo] Hunting and Decrypting Communications of Gh0st RAT in Memory
    • 2014.05 [pediy] [原创]Gh0st3.6 windows7无法连接bug分析
    • 2014.04 [pediy] [讨论]Gh0st3.6 IOCP发送BUG
    • 2014.03 [trendmicro] Kunming Attack Leads to Gh0st RAT Variant
    • 2013.08 [pediy] 이차 gh0st
    • 2013.06 [trendmicro] Targeted Attack in Taiwan Uses Infamous Gh0st RAT
    • 2012.11 [trendmicro] DaRK DDoSseR Leads to Gh0st RAT
    • 2012.06 [alienvault] New MaControl variant targeting Uyghur users, the Windows version using Gh0st RAT
    • 2012.05 [forcepoint] The Amnesty International UK website was compromised to serve Gh0st RAT [Update]

    NanoCore

    도구

    • [2별][10m] [Py] jacobpimental/nanocore_extractor AutoIT 스크립트에서 nanocore 샘플 추출

    문서

    • 2020.01 [molly] NanoCore: The RAT that keeps on keeping on. How to detect and prove an infection.
    • 2019.11 [4hou] 이중 로드 ZIP 파일로 Nanocore RAT 유포
    • 2019.10 [morphisec] NanoCore RAT Under the Microscope
    • 2019.06 [myonlinesecurity] More AgentTesla keylogger and Nanocore RAT in one bundle
    • 2019.06 [myonlinesecurity] Nanocore RAT via fake DHL failed delivery in Chinese
    • 2019.06 [4hou] NanoCore 범죄 소프트웨어 공격 체인 분석
    • 2019.06 [yoroi] Dissecting NanoCore Crimeware Attack Chain
    • 2019.05 [myonlinesecurity] nanocore RAT via fake order in password protected word doc with wrong password
    • 2019.05 [myonlinesecurity] Fake Fedex Express Shipment For Pickup in iso delivers nanocore using Sendgrid
    • 2019.05 [goggleheadedhacker] Unpacking NanoCore Sample Using AutoIT
    • 2019.03 [carbonblack] TAU Threat Intelligence Notification: NanoCore – Old Malware, New Tricks!
    • 2019.01 [myonlinesecurity] Fake Autec Power purchase Order delivers Nanocore RAT
    • 2019.01 [myonlinesecurity] Nanocore via fake order using dde in csv files
    • 2019.01 [myonlinesecurity] Nanocore RAT via fake order emails
    • 2019.01 [malware] 2019-01-04 - MALSPAM PUSHES NANOCORE RAT
    • 2018.11 [myonlinesecurity] Fake Payment Receipt delivers Nanocore RAT malware
    • 2018.06 [UltraHacks] NanoCore [Free Download] [No Virus] [DL] | Ultra Hacks
    • 2018.04 [myonlinesecurity] Fake PAYMENT CONFIRMATION emails deliver Nanocore RAT
    • 2018.04 [myonlinesecurity] Nanocore Rat delivered via fake order emails
    • 2018.04 [myonlinesecurity] Nanocore via fake Purchase order malspam using Microsoft Office Equation Editor exploits
    • 2018.04 [myonlinesecurity] Nanocore RAT delivered by fake order malspam
    • 2018.02 [krebsonsecurity] Bot Roundup: Avalanche, Kronos, NanoCore
    • 2017.11 [myonlinesecurity] Fake Product Enquiry malspam delivers Nanocore RAT
    • 2017.10 [fortinet] PDF Phishing Leads to Nanocore RAT, Targets French Nationals
    • 2017.10 [fortinet] JavaScript 내장 PDF 악성 파일, 시작 시 Google Drive 공유 링크를 통해 HTA 파일 다운로드, HTA 파일이 NanoCore 원격 제어 다운로드 및 실행
    • 2017.08 [myonlinesecurity] Angelika Rodriguez – [email protected] – Purchase Order malspam delivers nanocore RAT
    • 2017.05 [netskope] NanocoreRAT delivery via cloud storage apps shifts from .uue to .r11
    • 2017.03 [itsjack] Nanocore Cracked Alcatraz – Leaving The Door Open
    • 2016.10 [sans] Malspam delivers NanoCore RAT
    • 2016.02 [paloaltonetworks] NanoCoreRAT Behind an Increase in Tax-Themed Phishin
    • 2015.11 [f] Halloween RAT: NanoCore Served Via PageFair Service
    • 2015.04 [ensilo] NanoCore RAT: It’s Not 100% Original

    NjRat

    도구

    • [143별][2y] [Visual Basic .NET] alibawazeeer/rat-njrat-0.7d-modded-source-code NJR
    • [128별][8d] [Visual Basic] mwsrc/njrat njRAT SRC 추출
    • [14별][5m] [C#] nyan-x-cat/njrat-0.7d-stub-csharp njRAT C# Stub - PowerShell 수정 버전
    • [3별][2y] [Py] seep1959/njutils njrat 0.6.4, 0.7d 및 0.7d 골든 에디션용 클라이언트 및 채팅 프로그램

    문서

    • 2019.12 [carbonblack] Threat Analysis Unit (TAU) Threat Intelligence Notification: njRAT
    • 2019.09 [freebuf] Gorgon APT 조직, DropBox에서 NJRat까지의 우여곡절
    • 2019.05 [morphisec] A look at Hworm / Houdini AKA njRAT
    • 2019.05 [myonlinesecurity] Fake Payment receipt vbs drops njrat bladabindi downloads Agent Tesla via Sendspace.
    • 2018.11 [trendmicro] AutoIt 컴파일 웜, 이동식 미디어를 통해 전파, 무파일 버전 njRAT 원격 제어 배포
    • 2018.06 [360] 늙은 나무에 새 꽃이 피다 -- njRAT 계열 악성코드 분석 보고서
    • 2018.06 [freebuf] 기술 토론 | NjRAT, base64 인코딩 암호화 혼동을 통한 Code 우회 360 백신 탐지 우회 실험
    • 2018.04 [UltraHacks] njRAT v0.7 | Tutorial | www.ultrahacks.org | Ultra Hacks
    • 2018.03 [broadanalysis] Guest Blog Post: njRat Analysis with Volatility
    • 2018.01 [rsa] Malspam delivers njRAT 1-11-2018
    • 2017.12 [malwarenailed] Revisiting HWorm and NjRAT
    • 2016.12 [freebuf] 역대 최고의 njRAT 통신 프로토콜 분석
    • 2016.08 [MalwareAnalysisForHedgehogs] Malware Analysis - Unpacking njRAT Protected by Confuser v.1.9 and others
    • 2016.01 [sensecy] Is There A New njRAT Out There?
    • 2015.12 [sec] 트로이목마 정보 분석: njRAT&H-worm
    • 2015.11 [alienvault] KilerRat: Taking over where Njrat remote access trojan left off
    • 2015.08 [virusbulletin] Paper: Life after the apocalypse for the Middle Eastern NJRat campaign
    • 2014.08 [mcafee] Trailing the Trojan njRAT
    • 2014.08 [mcafee] Trailing the Trojan njRAT
    • 2014.01 [rsa] Detecting njRAT in Your Environment

    Revenge RAT

    도구

    • [21별][2m] [C#] nyan-x-cat/revengerat-stub-cssharp Revenge-RAT C# Stub - 수정 버전

    문서

    • 2020.01 [malware] 2020-01-15 - QUICK POST: MALSPAM PUSHING REVENGE RAT
    • 2019.11 [fortinet] Double Trouble: RevengeRAT and WSHRAT
    • 2019.09 [360] Revenge-RAT, 이탈리아 대상 피싱 이메일 공격에 사용
    • 2019.04 [4hou] 피싱 이메일로 RevengeRAT 유포하는 Aggah 작전
    • 2019.03 [alienvault] Mapping TrickBot and RevengeRAT with MITRE ATT&CK and AlienVault USM Anywhere
    • 2019.02 [4hou] Revenge RAT 악성코드 업그레이드 버전 등장
    • 2018.04 [dissectmalware] Stealthy VBScript dropper dropping Revenge RAT
    • 2017.10 [rsa] Malspam Delivers Revenge RAT October-2017
    • 2016.08 [deniable] Lurking Around Revenge-RAT

    PlugX### 도구

    • [28성][7y] [Py] kcreyts/plugxdecoder Decodes PlugX traffic and encrypted/compressed artifacts

    문서

    • 2020.01 [hexacorn] The Wizard of X – Oppa PlugX style, Part 2
    • 2019.11 [BorjaMerino] Rebind Socket Windows: PoC PlugX Controller
    • 2018.06 [countuponsecurity] Digital Forensics – PlugX and Artifacts left behind
    • 2018.05 [countuponsecurity] Malware Analysis – PlugX – Part 2
    • 2018.02 [4hou] PlugX 악성코드 패밀리의 공격 능력 분석
    • 2018.02 [360] PlugX 악성코드 분석 보고서
    • 2018.02 [countuponsecurity] Malware Analysis – PlugX
    • 2017.09 [fortinet] Deep Analysis of New Poison Ivy/PlugX Variant - Part II
    • 2017.09 [fortinet] 새로운 Poison Ivy/PlugX 변종 심층 분석
    • 2017.09 [360] Stack overflow in PlugX RAT
    • 2017.07 [hexacorn] The Wizard of X – Oppa PlugX style
    • 2017.02 [jpcert] PlugX + Poison Ivy = PlugIvy? - PlugX Integrating Poison Ivy’s Code -
    • 2016.06 [airbuscybersecurity] Getting a PlugX builder
    • 2016.06 [cylance] CylancePROTECT® vs. PlugX – JTB Breach Affects 7.93 Million People in Japan
    • 2016.03 [securelist] PlugX malware: A good hacker is an apologetic hacker
    • 2015.11 [volatility] PlugX: Memory Forensics Lifecycle with Volatility
    • 2015.09 [cyintanalysis] Using threat_note To Track Campaigns: Returning to PIVY and PlugX Infrastructure
    • 2015.09 [airbuscybersecurity] Volatility plugin for PlugX updated
    • 2015.08 [rebsnippets] PlugX Chronicles
    • 2015.08 [cyintanalysis] Threat Analysis: Poison Ivy and Links to an Extended PlugX Campaign
    • 2015.08 [airbuscybersecurity] Latest changes in PlugX
    • 2015.05 [paloaltonetworks] PlugX Uses Legitimate Samsung Application for DLL Sid
    • 2015.04 [freebuf] 악성코드 분석: 대만 공식 버전 리그 오브 레전드(LoL) 및 패스 오브 엑자일(PoE)에 원격 제어 도구 PlugX 삽입
    • 2015.01 [jpcert] Analysis of a Recent PlugX Variant - "P2P PlugX"
    • 2015.01 [] A Closer Look at PlugX from League of Legends / Path of Exile
    • 2015.01 [trendmicro] PlugX Malware Found in Official Releases of League of Legends, Path of Exile
    • 2014.06 [trendmicro] PlugX RAT With "Time Bomb" Abuses Dropbox for Command-and-Control Settings
    • 2014.06 [lastline] An Analysis of PlugX Using Process Dumps from High-Resolution Malware Analysis
    • 2014.01 [airbuscybersecurity] PlugX "v2": meet "SController"
    • 2014.01 [airbuscybersecurity] PlugX: some uncovered points
    • 2013.12 [lastline] An Analysis of PlugX Malware
    • 2013.05 [freebuf] FireEye: PlugX 노련한 말의 새로운 사용, 중국 정치 활동 대상 APT 공격 분석
    • 2013.04 [trendmicro] New Wave of PlugX Targets Legitimate Apps
    • 2013.04 [securelist] Winnti returns with PlugX
    • 2012.09 [freebuf] 해외 전문가의 인적 표적 공격 원격 제어 PlugX 개발자 전 과정 분석
    • 2012.09 [alienvault] The connection between the Plugx Chinese gang and the latest Internet Explorer Zeroday
    • 2012.09 [trendmicro] Unplugging PlugX Capabilities
    • 2012.09 [alienvault] Tracking down the author of the PlugX RAT
    • 2012.09 [freebuf] 새로운 원격 제어 도구 PlugX가 피싱 공격을 통해 일본 정부를 대상으로 활용 중
    • 2012.09 [trendmicro] PlugX: New Tool For a Not So New Campaign

    RemcosRAT

    • 2019.10 [fortinet] New Variant of Remcos RAT Observed In the Wild
    • 2019.09 [myonlinesecurity] Some changes to Remcos Rat persistence method
    • 2019.09 [myonlinesecurity] Fake invoice tries to deliver Remcos RAT
    • 2019.09 [freebuf] 피싱 이메일 속 Remcos RAT 변종 분석
    • 2019.08 [trendmicro] Analysis: New Remcos RAT Arrives Via Phishing Email
    • 2019.06 [myonlinesecurity] Remcos Rat via fake invoice using multiple delivery methods.
    • 2019.06 [HackerSploit] Remcos RAT Review - The Most Advanced Remote Access Tool
    • 2018.11 [myonlinesecurity] More Fake DHL invoices delivering Remcos RAT via office XML files
    • 2018.10 [myonlinesecurity] Fake DHL READ : (DHL Express) -Delivery Address Confirmation delivers Remcos Rat
    • 2018.09 [myonlinesecurity] Fake Purchase Order email delivers Remcos RAT
    • 2018.09 [360] Remcos 기반 봇넷 분석
    • 2018.08 [securityledger] Cisco Links Remote Access Tool Remcos to Cybercriminal Underground
    • 2018.08 [talosintelligence] Picking Apart Remcos Botnet-In-A-Box
    • 2018.08 [UltraHacks] Remcos RAT Tutorial | Remote Administration Tool | Ultra Hacks
    • 2018.07 [myonlinesecurity] Fake DHL "Alert! Shipment Notification" delivers Remcos RAT
    • 2018.05 [fortinet] Remcos 원격 제어 변종, CVE-2017-11882 악용하여 유포
    • 2018.04 [myonlinesecurity] Remcos RAT delivered by fake " your workers are fighting" message
    • 2018.04 [myonlinesecurity] Remcos RAT delivered via fake CCICM international debt recovery service
    • 2018.04 [myonlinesecurity] Fake Payment recovery email spoofing CCICM international debt recovery service delivers Remcos rat via Microsoft Equation Editor Exploits
    • 2018.03 [tencent] 새로운 원격 제어 트로이목마 Remcos, CVE-2017-11882 취약점 악용하여 실시간 공격
    • 2018.03 [myonlinesecurity] Fake order spoofed from Finchers ltd Sankyo-Rubber delivers Remcos RAT via ACE attachments
    • 2017.09 [malwarebreakdown] Malvertising Leads to RIG EK and Drops Remcos RAT.
    • 2017.09 [trendmicro] 클라우드 플랫폼 Autodesk® A360이 Adwind, Remcos, Netwire RAT 등 악성코드 유포에 악용됨
    • 2017.08 [cybereason] Cybereason creates 'vaccine' to stop Remcos RAT
    • 2017.02 [fortinet] REMCOS: A New RAT In The Wild

    L0rdixRAT

    • 2019.08 [bromium] Decrypting L0rdix RAT's C2
    • 2019.07 [bromium] An Analysis of L0rdix RAT, Panel and Builder
    • 2018.11 [ensilo] L0RDIX: Multipurpose Attack Tool

    LodaRAT

    • 2020.02 [talosintelligence] Loda RAT Grows Up

    GulfRAT

    • 2020.01 [TheCyberWire] Phishing with a RAT in the Gulf. More on how Jeff Bezos was hacked. Microsoft discloses data...
    • 2020.01 [TheCyberWire] Escalation in the Gulf as a US air strike kills Iran's Quds commander. Travelex and RavnAir...
    • 2019.08 [nettitude] Tanker Cyber Attacks taking place in the Gulf
    • 2017.09 [mikefrobbins] PowerShell Toolmaking session this Saturday, September 30th at Gulf Coast Code Camp 2017 in Mobile, Alabama
    • 2016.11 [fireeye] FireEye Responds to Wave of Destructive Cyber Attacks in Gulf Region
    • 2016.03 [elearnsecurity] Visit eLearnSecurity on Gulf Information Security and Gulf Expo 2016 in Dubai
    • 2015.07 [welivesecurity] New report explains gulf between security experts and non-experts
    • 2010.08 [publicintelligence] Los Zetas and Gulf Cartel Perpetrators of Mexican Drug Trafficking Violence Organizational Chart
    • 2010.05 [publicintelligence] BP Minerals Management Service Workshop Brief: Unlocking Gulf of Mexico "Technological Challenges"

    NetWireRAT

    • 2020.01 [securityintelligence] New NetWire RAT Campaigns Use IMG Attachments to Deliver Malware Targeting Enterprise Users
    • 2019.11 [carbonblack] Active C2 Discovery Using Protocol Emulation Part1 (HYDSEVEN NetWire)
    • 2019.09 [fortinet] New NetWire RAT Variant Being Spread Via Phishing
    • 2019.08 [malware] 2019-08-23 - DATA DUMP (URSNIF, RIG EK, NETWIRE RAT)
    • 2019.04 [myonlinesecurity] Fake DHL Shipment Notification delivers Netwire Trojan
    • 2018.11 [traffic] [2018-11-21] HookAds->FalloutEK->AZORult->NetWireRAT
    • 2017.11 [myonlinesecurity] Fake HSBC Advising Service Payment Advice malspam delivers Netwire trojan
    • 2017.10 [myonlinesecurity] Fake HSBC Swift Copy delivers Netwire trojan
    • 2017.09 [TechnoHacker] NetWire HKCU/Run vs ActiveX Startup
    • 2017.08 [TechnoHacker] Netwire Tutorial: How to Sign the Android Host
    • 2017.04 [TechnoHacker] How to crypt Netwire with Cyberseal
    • 2017.04 [TechnoHacker] Netwire RAT Review
    • 2014.08 [paloaltonetworks] NetWire and MITRE
    • 2014.08 [paloaltonetworks] New Release: Decrypting NetWire C

    JhoneRAT

    • 2020.01 [talosintelligence] JhoneRAT: Cloud based python RAT targeting Middle Eastern countries

    Dacls

    • 2019.12 [360] Lazarus Group, Dacls RAT로 Linux 플랫폼 공격
    • 2019.12 [360] Dacls, the Dual platform RAT

    BlackRemote

    • 2019.12 [carbonblack] Threat Analysis Unit (TAU) Threat Intelligence Notification: BlackRemote RAT

    Orcus

    • 2019.11 [krebsonsecurity] Orcus RAT Author Charged in Malware Scheme
    • 2019.01 [morphisec] New Campaign Delivers Orcus RAT
    • 2018.04 [freebuf] SYLK 파일을 통한 Orcus 원격 제어 트로이목마 샘플 분석
    • 2017.12 [fortinet] Circle of the fraud: more information about Bitcoin Orcus RAT campaign
    • 2017.12 [fortinet] Circle of the fraud: more information about Bitcoin Orcus RAT campaign
    • 2017.12 [fortinet] A Peculiar Case of Orcus RAT Targeting Bitcoin Investors
    • 2017.12 [fortinet] Orcus 원격 제어, 비트코인 투자자 노려 비트코인 거래 봇 Gunbot으로 위장하여 유포
    • 2017.05 [freebuf] Orcus VM 풀이 단계
    • 2017.04 [hackingarticles] Hack the Orcus VM CTF Challenge
    • 2017.04 [techanarchy] VulnHub Orcus Solution
    • 2017.03 [vulnhub] hackfest2016: Orcus
    • 2017.03 [vulnhub] hackfest2016: Orcus
    • 2016.08 [deniable] Cracking Orcus RAT
    • 2016.08 [deniable] Cracking Orcus RAT
    • 2016.08 [deniable] Cracking Orcus RAT
    • 2016.08 [paloaltonetworks] Orcus – Birth of an unusual plugin bu
    • 2016.07 [krebsonsecurity] Canadian Man Behind Popular 'Orcus RAT'

    NukeSped

    • 2019.10 [fortinet] A Deep-Dive Analysis of the NukeSped RATs

    DarkComet- 2018.09 [UltraHacks] How to setup DarkCometRAT 5.3.1 + Portforward

    • 2018.04 [freebuf] CVE-2017-11882 새로운 동향: AutoIT 스크립트를 이용한 DarkComet 백도어 배포
    • 2018.03 [tencent] CVE-2017-11882 새로운 동향: AutoIT 스크립트를 이용한 DarkComet 백도어 배포
    • 2017.10 [rsa] Malspam Delivers DarkComet RAT October-2017
    • 2017.01 [HackingMonks] Darkcomet Rat Tutorial (Trojans are awesome)
    • 2016.02 [hackingarticles] Hack Remote PC using Darkcomet RAT with Metasploit
    • 2015.11 [TechnoHacker] How to setup DarkComet RAT [Voice Tutorial] [Download Link]
    • 2015.07 [SecurityBSidesLondon] Kevin Breen - DarkComet From Defense To Offense - Identify your Attacker
    • 2015.03 [heimdalsecurity] Security Alert: Infamous DarkComet RAT Used In Spear Phishing Campaigns
    • 2015.03 [sketchymoose] Smooshing the Square Peg into the Round Hole: DarkComet Plugin for 64-bit images
    • 2012.07 [freebuf] DarkComet RAT 저자, 프로젝트 개발 중단 발표
    • 2012.06 [freebuf] [업데이트] 강력한 원격 제어 도구 – DarkComet RAT V5.3.1
    • 2012.06 [malwarebytes] You dirty RAT! Part 1: DarkComet
    • 2012.04 [trendmicro] Fake Skype Encryption Software Cloaks DarkComet Trojan
    • 2012.04 [toolswatch] DarkComet-RAT Remote Administration Tool v5.1.1 released
    • 2012.03 [quequero] DarkComet Analysis – Understanding the Trojan used in Syrian Uprising
    • 2012.02 [trendmicro] DarkComet Surfaced in the Targeted Attacks in Syrian Conflict
    • 2011.08 [toolswatch] DarkComet-RAT (Remote Administration Tool) v4.0 Fix 1 available
    • 2011.05 [toolswatch] DarkComet-RAT v3.3 available
    • 2011.01 [toolswatch] (EXCLUSIVE) DarkComet-RAT updated to v3.0.1
    • 2011.01 [toolswatch] EXCLUSIVE : DarkComet-RAT 3.0 released (Impressive RAT tool)

    WarZone RAT

    • 2018.11 [UltraHacks] Warzone RAT C++ | Hidden VNC [PROMOTION VIDEO]| Ultra Hacks

    BlackShades

    • 2017.01 [TechnoHacker] Blackshades Revisited
    • 2016.02 [TechnoHacker] How to use Blackshades [download link]
    • 2016.02 [TechnoHacker] How to setup Blackshades RAT [Voice Tutorial] [download link]
    • 2014.05 [malwarebytes] Taking off the Blackshades
    • 2014.05 [endgame] Blackshades: Why We Should Care About Old Malware
    • 2014.05 [trendmicro] The Blackshades RAT – Entry-Level Cybercrime
    • 2014.05 [publicintelligence] FBI Blackshades Remote Access Tool Private Sector Bulletins and Domain List
    • 2014.05 [alienvault] Blackshades Smackdown & Poking China in the Eye
    • 2014.05 [cylance] A Study in Bots: BlackShades Net
    • 2014.05 [welivesecurity] Behind Blackshades: a closer look at the latest FBI cyber crime arrests
    • 2014.05 [krebsonsecurity] ‘Blackshades’ Trojan Users Had It Coming
    • 2014.05 [malwaretech] FBI Cybercrime Crackdown – Blackshades
    • 2012.07 [malwarebytes] BlackShades 공동 제작자 체포!
    • 2012.06 [malwarebytes] BlackShades in Syria
    • 2012.06 [citizenlab] Syrian Activists Targeted with BlackShades Spy Software
    • 2012.06 [malwarebytes] You Dirty RAT! Part 2 – BlackShades NET

    DenesRAT

    • 2019.10 [nsfocus] 해연화(APT32) 조직 DenesRAT 트로이 목마 및 관련 공격 체인 분석

    WSH RAT

    • 2019.10 [angelalonso] WSH RAT - Analysis of the code
    • 2019.10 [angelalonso] Fudcrypt using H-Worm from WSH RAT
    • 2019.09 [freebuf] 해커가 새 WSH RAT 최신 변종 샘플을 구매, 은행 고객 공격
    • 2019.09 [angelalonso] WSH RAT and the link to unknowcrypter and Fudcrypt

    Qrypter RAT

    • 2018.04 [4hou] 점점 더 인기를 얻고 있는 Qrypter RAT의 운영 상황 분석
    • 2017.12 [angelalonso] Qrypter Java RAT using Tor

    Adwind

    • 2019.08 [4hou] Adwind 원격 제어 도구, 현재 공공 부문 공격에 널리 사용됨
    • 2018.10 [reversinglabs] eWeek: Cisco Talos and ReversingLabs warn that the Adwind Remote Access Trojan (RAT) has added capabilities that enable it bypass some anti-virus technologies
    • 2018.04 [4hou] 스팸 캠페인, XTRAT, DUNIHI 및 Adwind 백도어 사용
    • 2018.04 [trendmicro] 트렌드마이크로 연구원, 스팸을 통해 크로스 플랫폼 원격 제어 도구 Adwind 배포 감시, 동시에 XTRAT, DUNIHI 및 Loki 백도어 번들
    • 2018.04 [ensilo] enSilo Blocks New Variant of Adwind RAT
    • 2018.03 [OALabs] Analyzing Adwind / JRAT Java Malware
    • 2018.03 [heimdalsecurity] Security Alert: Spam Campaign Spreads Adwind RAT variant, Targeting Computer Systems
    • 2018.02 [fortinet] New jRAT/Adwind Variant Being Spread With Package Delivery Scam
    • 2018.02 [rsa] Winds of Winter - MalSpam Delivers Adwind RAT 2-1-2018
    • 2018.02 [myonlinesecurity] Fake Swift Copy malspam via compromised sites delivering Java Adwind/ QRAT /JRAT Trojan
    • 2017.12 [myonlinesecurity] Fake “Your UPS Invoice Is Ready” malspam delivers Java Adwind / Java JRAT Trojan
    • 2017.08 [netskope] Adwind RAT employs new obfuscation techniques
    • 2017.07 [trendmicro] Spam Campaign Delivers Cross-platform Remote Access Trojan Adwind
    • 2017.03 [freebuf] Adwind RAT, 100개 이상의 국가 및 지역의 기업 공격 대상
    • 2017.01 [codemetrix] Decrypting Adwind jRAT jBifrost trojan
    • 2016.08 [fortinet] JBifrost: Yet Another Incarnation of the Adwind RAT
    • 2016.07 [heimdalsecurity] Security Alert: Adwind RAT Used in Targeted Attacks with Zero AV Detection
    • 2016.02 [securelist] Expert: cross-platform Adwind RAT
    • 2016.02 [kaspersky] The wind that smells like RAT: The story of Adwind MaaS
    • 2013.11 [crowdstrike] Adwind RAT Rebranding

    CannibalRAT

    • 2018.02 [talosintelligence] CannibalRAT targets Brazil

    jRAT

    • 2018.10 [cofense] H-Worm and jRAT Malware: Two RATs are Better than One
    • 2018.08 [Sebdraven] Lammers, stealers and RATs: same technics like Formbook malware to install JRAT and HawkEye…
    • 2018.03 [trustwave] Crypter-as-a-Service Helps jRAT Fly Under The Radar

    jsRAT

    • 2018.02 [netskope] ShortJSRAT leverages cloud with scriptlets
    • 2017.07 [rsa] Recreating the Crime Scene - A JSRat Story
    • 2016.05 [evi1cg] JSRAT 여러 실행 방식
    • 2016.03 [hackingarticles] Hack Remote Windows 10 PC using JSRAT
    • 2015.07 [secist] JSRAT를 사용하여 win10 시스템 원격 관리

    CrossRat

    • 2018.01 [360] 글로벌 네트워크 스파이 활동에 사용된 크로스 플랫폼 악성 소프트웨어 CrossRAT 분석 (하)
    • 2018.01 [4hou] CrossRat 원격 제어 소프트웨어 분석
    • 2018.01 [360] 글로벌 네트워크 스파이 활동에 사용된 크로스 플랫폼 악성 소프트웨어 CrossRAT 분석 (상)
    • 2018.01 [objective] 글로벌 네트워크 스파이 활동에 사용된 크로스 플랫폼 원격 제어 도구 CrossRAT 분석

    ArmaRat

    • 2018.09 [360] ArmaRat: 이란 사용자를 대상으로 한 2년 간의 스파이 활동

    RokRAT

    • 2018.01 [morphisec] Threat Profile: RokRAT
    • 2017.12 [MalwareAnalysisForHedgehogs] Malware Analysis - ROKRAT Unpacking from Injected Shellcode
    • 2017.11 [talosintelligence] ROKRAT Reloaded
    • 2017.06 [alienvault] A RAT that Tweets: New ROKRAT Malware Hides behind Twitter, Amazon, and Hulu Traffic
    • 2017.04 [360] 클라우드 플랫폼을 사용하는 ROKRAT 트로이 목마 분석
    • 2017.04 [talosintelligence] ROKRAT 원격 제어 분석: 피싱부터 페이로드까지, Twitter/Yandex/Mediafire를 C&C로 사용

    CatKARAT

    • 2018.01 [hackingarticles] TCP & UDP Packet Crafting with CatKARAT

    TheFatRat

    • 2018.11 [freebuf] 기술 공유 | TheFatRat를 사용하여 Android 휴대폰 해킹하는 방법
    • 2017.11 [TheHackerStuff] TheFatRat - Hacking Over WAN - Embedding Payload in Original Android APK - Without Port Forwarding
    • 2016.12 [TheHackerStuff] Kali Linux - TheFatRat - Creating an Undetectable Backdoor - Bypass all AntiVirus
    • 2016.09 [freebuf] TheFatRat: Msfvenom 간편 백도어 생성 도구
    • 2016.07 [hackingarticles] Hack Remote Windows 10 PC using TheFatRat

    OmniRAT

    • 2017.07 [skycure] Nasty backdoor OmniRAT is back, disguised as GhostCtrl on Android mobile devices
    • 2015.11 [freebuf] OmniRAT 변종 트로이 목마 악용

    LuminosityLink

    • 2018.10 [welivesecurity] LuminosityLink RAT pack leader jailed 30 months in the US
    • 2018.02 [paloaltonetworks] RAT Trapped? LuminosityLink Falls Foul of Vermin Eradicatio
    • 2017.05 [UltraHacks] How to setup LuminosityLink RAT with nVPN | PORTFORWARD FIX!!!
    • 2017.05 [umbrella] The Weather Report: Seamless Campaign, LuminosityLink RAT, and OG-Miner!
    • 2017.03 [myonlinesecurity] Request for 1st new order proforma invoice malspam delivers LuminosityLink RAT
    • 2016.07 [paloaltonetworks] Investigating the LuminosityLink Remote Access Trojan Conf

    기타- 2020.02 [proofpoint] Proofpoint Q4 2019 Threat Report and Year in Review — The Year of the RAT Ends with More of the Same

    • 2020.01 [sentinelone] CISO Essentials | How Remote Access Trojans Affect the Enterprise
    • 2020.01 [TheCyberWire] RATs, backdoors, and a remote code execution zero-day. Hoods breach Mitsubishi Electric. Telnet...
    • 2020.01 [freebuf] 유효 디지털 인증서 내 원격 제어 트로이목마 바이러스 분석 보고서
    • 2020.01 [rambus] Cable Haunt vulnerability can give hackers remote access to approximately 200 million cable modems
    • 2020.01 [proofpoint] Threat Insight 2019 in Review: Year of the RAT
    • 2019.12 [ptsecurity] Turkish tricks with worms, RATs… and a freelancer
    • 2019.12 [infosecinstitute] Malware spotlight: What is a Remote Access Trojan (RAT)?
    • 2019.12 [UltraHacks] Dark Shades Android RAT | Ultra Hacks
    • 2019.11 [broadanalysis] Fallout Exploit Kit delivers suspect Remote Access Trojan (RAT)
    • 2019.11 [carbonblack] Threat Analysis Unit (TAU) Threat Intelligence Notification: AsyncRAT
    • 2019.11 [proofpoint] Proofpoint Q3 2019 Threat Report — Emotet’s return, RATs reign supreme, and more
    • 2019.10 [tencent] 快Go矿工(KuaiGoMiner)수만 대의 컴퓨터를 제어하여 채굴하고, 원격 제어 트로이목마를 방출하여 기밀을 탈취
    • 2019.10 [4hou] 快go矿工(KuaiGoMiner)수만 대의 컴퓨터를 제어하여 채굴하고, 원격 제어 트로이목마를 방출하여 기밀을 탈취
    • 2019.10 [proofpoint] TA505 Distributes New SDBbot Remote Access Trojan with Get2 Downloader
    • 2019.10 [tencent] “月光(Moonlight)”웜이 대학 네트워크를 위협하며, 감염된 컴퓨터가 원격 제어됨
    • 2019.10 [4hou] “月光(Moonlight)”웜이 대학 네트워크를 위협하며, 감염된 컴퓨터가 원격 제어됨
    • 2019.10 [freebuf] 스파이 방지 여행: 최초의 안드로이드 원격 제어 트로이목마 도구 분석
    • 2019.09 [4hou] 바이러스 조직이 phpStudy RCE 취약점을 이용해 대량으로 봇을 감염시키고, 네 가지 원격 제어 트로이목마를 배포
    • 2019.09 [aliyun] badusb를 이용하여 사용자에게 트로이목마 원격 제어 수행
    • 2019.09 [sensecy] ARABIC-SPEAKING THREAT ACTOR RECYCLES THE SOURCE CODE OF POPULAR RAT SPYNOTE AND SELLS IT IN THE DARK WEB, AS NEW
    • 2019.08 [securelist] Fully equipped Spying Android RAT from Brazil: BRATA
    • 2019.08 [talosintelligence] RAT Ratatouille: Backdooring PCs with leaked RATs
    • 2019.08 [malware] 2019-08-26 - DATA DUMP: SOCGHOLISH CAMPAIGN PUSHES NETSUPPORT RAT
    • 2019.08 [fortinet] Fake Indian Income Tax Calculator Delivers xRAT Variant
    • 2019.07 [tencent] 商贸信 패밀리 새로운 활동: 피싱 이메일을 이용하여 상업용 원격 제어 트로이목마 RevetRAT 유포
    • 2019.07 [freebuf] 원격 제어 트로이목마에 대해 알아야 할 지식 포인트
    • 2019.07 [trendmicro] Spam Campaign Targets Colombian Entities with Custom-made ‘Proyecto RAT,’ Uses Email Service YOPmail for C&C
    • 2019.07 [freebuf] APT34 핵심 구성 요소 Glimpse: 원격 제어 재현 및 트래픽 분석
    • 2019.07 [d] Red Team Diary, Entry #1: Making NSA’s PeddleCheap RAT Invisible
    • 2019.07 [yoroi] Spotting RATs: Tales from a Criminal Attack
    • 2019.07 [cybersecpolitics] Book Review: Delusions of Intelligence, R.A. RATCLIFF
    • 2019.07 [4hou] 트로이목마 진화 트렌드 탐구: APT32 다중 버전 원격 제어 트로이목마 Ratsnif의 가로 분석
    • 2019.07 [4hou] 원격 제어 트로이목마에 대한 간단한 이야기
    • 2019.07 [freebuf] 악성 LNK 파일을 배달하여 JwsclTerminalServer를 사용해 원격 제어 및 정보 획득 구현
    • 2019.07 [securityintelligence] Taking Over the Overlay: What Triggers the AVLay Remote Access Trojan (RAT)?
    • 2019.07 [securityintelligence] Taking Over the Overlay: Reverse Engineering a Brazilian Remote Access Trojan (RAT)
    • 2019.07 [talosintelligence] RATs and stealers rush through “Heaven’s Gate” with new loader
    • 2019.06 [4hou] H-worm 웜 바이러스가 영화 샘플 파일로 위장한 피싱 주의, 부주의하게 첨부 파일을 클릭하면 원격 제어 트로이목마에 감염됨
    • 2019.06 [nightst0rm] Tôi đã chiếm quyền điều khiển của rất nhiều trang web như thế nào?
    • 2019.06 [4hou] TA505가 최신 공격 활동에서 HTML, RAT 및 기타 기술을 사용
    • 2019.06 [trendmicro] Shifting Tactics: Breaking Down TA505 Group’s Use of HTML, RATs and Other Techniques in Latest Campaigns
    • 2019.05 [4hou] 악성코드의 멀티태스킹 능력을 향상시키는 Babylon RAT
    • 2019.05 [360] XLM 매크로를 이용하여 원격 제어 도구를 유포하는 스팸 메일 활동 기록
    • 2019.05 [arxiv] [1905.07273] Finding Rats in Cats: Detecting Stealthy Attacks using Group Anomaly Detection
    • 2019.05 [freebuf] Python 기반 BS 원격 제어 Ares 실전
    • 2019.05 [4hou] C&C 원격 제어 도구: WebSocket C2
    • 2019.04 [paloaltonetworks] BabyShark Malware Part Two – Attacks Continue Using KimJongRAT
    • 2019.04 [freebuf] 내가 원격 제어 뒤에 있는 배후를 어떻게 잡아냈는지
    • 2019.04 [4hou] C&C 원격 제어 도구: Ares
    • 2019.04 [krebsonsecurity] Who’s Behind the RevCode WebMonitor RAT?
    • 2019.04 [freebuf] 모네로 채굴 및 원격 제어 트로이목마 샘플 분석
    • 2019.04 [4hou] 모네로 채굴 + 원격 제어 트로이목마 샘플 분석
    • 2019.04 [4hou] LimeRAT 야생에서 유포
    • 2019.04 [yoroi] LimeRAT spreads in the wild
    • 2019.04 [alexander] Week 6 Cyberattack Digest 2019 – ExileRAT trojan, Eskom Group, and others
    • 2019.03 [360] 트로이목마 작성자가 Tatoo 원격 제어 백도어 프로그램을 자발적으로 제출
    • 2019.03 [flashpoint] FIN7 Revisited: Inside Astra Panel and SQLRat Malware
    • 2019.03 [tencent] 채굴 트로이목마가 SQL 서버에 대해 무차별 대입 공격을 하여 감염 시 서버가 원격 제어될 수 있음
    • 2019.03 [paloaltonetworks] Cardinal RAT Sins Again, Targets Israeli Fin-T
    • 2019.03 [aliyun] JAVA-VBS를 사용하여 RAT를 유포하는 방법 분석
    • 2019.03 [malware] 2019-03-06 - QUICK POST: KOREAN MALSPAM PUSHES FLAWED AMMYY RAT MALWARE
    • 2019.03 [4hou] JAVA + VBS로 RAT 유포
    • 2019.03 [mcafee] JAVA-VBS Joint Exercise Delivers RAT
    • 2019.02 [dodgethissecurity] Reverse Engineering an Unknown RAT – Lets call it SkidRAT 1.0
    • 2019.02 [4hou] ExileRAT와 LuckyCat이 C2 인프라 공유
    • 2019.02 [freebuf] 샤오미 M365 전동 스쿠터가 해킹 및 원격 제어 위험에 직면
    • 2019.02 [myonlinesecurity] Fake Blockchain authentication update delivers Dark Comet RAT
    • 2019.02 [securityartwork] Case study: “Imminent RATs” (III)
    • 2019.02 [securityartwork] Case study: “Imminent RATs” (II)
    • 2019.02 [securityledger] ExileRAT Malware Targets Tibetan Exile Government
    • 2019.02 [securityartwork] Case study: “Imminent RATs” (I)
    • 2019.02 [talosintelligence] ExileRAT shares C2 with LuckyCat, targets Tibet
    • 2019.02 [0x00sec] Programming language for Remote Access Toolkit
    • 2019.01 [angelalonso] Fudcrypt: the service to crypt Java RAT through VBS scripts and Houdini malware
    • 2019.01 [yoroi] The Story of Manuel’s Java RAT
    • 2019.01 [0x00sec] RATs question. Long break
    • 2019.01 [aliyun] AMP 기술을 사용하여 RAT 위협 분석
    • 2019.01 [360] Marvell Avastar Wi-Fi의 취약점을 이용한 원격 제어: 제로 지식 입문부터 RCE 취약점 발굴 및 활용까지 (하)
    • 2019.01 [aliyun] MS Word 문서를 사용하여 .Net RAT 악성코드 유포
    • 2019.01 [tencent] 텐센트 컴퓨터 매니저: '큰 회색 늑대' 원격 제어 트로이목마가 '클럽 회원 자료'로 위장하여 유포
    • 2019.01 [360] Marvell Avastar Wi-Fi의 취약점을 이용한 원격 제어: 제로 지식 입문부터 RCE 취약점 발굴 및 활용까지 (상)
    • 2019.01 [4hou] MS Word 문서를 사용하여 .Net RAT 악성코드 유포
    • 2019.01 [0x00sec] VPS or a VPN for a RAT?
    • 2019.01 [talosintelligence] What we learned by unpacking a recent wave of Imminent RAT infections using AMP
    • 2019.01 [fortinet] .Net RAT Malware Being Spread by MS Word Documents
    • 2019.01 [4hou] TA505가 새로운 ServHelper 백도어와 FlawedGrace RAT를 자체 무기고에 추가
    • 2019.01 [tencent] 브라우저 하이재킹, 원격 제어, 동영상 조회수 조작, 이런 크랙 활성화 도구는 유해합니다!
    • 2019.01 [4hou] 광고 악성코드가 게임, 원격 제어 앱으로 위장하여 900만 Google Play 사용자 감염
    • 2019.01 [UltraHacks] Ozone RAT C++ | Hidden VNC [TUTORIAL VIDEO] | Ultra Hacks
    • 2019.01 [micropoor] 고급 지속 침투 - 시즌 8 데모는 원격 제어
    • 2019.01 [tencent] Gorgon 조직으로 추정되는 그룹이 Azorult 원격 제어 트로이목마를 사용하여 중국 무역 업계를 대상으로 한 표적 공격 활동
    • 2019.01 [4hou] JungleSec 랜섬웨어가 IPMI 원격 콘솔을 통해 피해자 감염
    • 2019.01 [sans] Remote Access Tools: The Hidden Threats Inside Your Network
    • 2018.12 [freebuf] tRat: 여러 스팸 이메일 캠페인에서 나타난 새로운 모듈식 RAT
    • 2018.12 [k7computing] Scumbag Combo: Agent Tesla and XpertRAT
    • 2018.12 [360] Flash 0day + Hacking Team 원격 제어: 최신 Flash 0day 취약점을 이용한 공격 활동 및 연관 분석
    • 2018.12 [freebuf] Flash 0day + Hacking Team 원격 제어: 최신 Flash 0day 취약점을 이용한 공격 활동 및 연관 분석
    • 2018.11 [4hou] tRat: 새로운 모듈식 RAT
    • 2018.11 [proofpoint] tRat: 여러 스팸 캠페인에서 유포되는 새로운 모듈식 원격 제어
    • 2018.11 [checkpoint] October 2018’s Most Wanted Malware: For The First Time, Remote Access Trojan Reaches Top 10 Threats | Check Point Software Blog
    • 2018.11 [checkpoint] October 2018’s Most Wanted Malware: For The First Time, Remote Access Trojan Reaches Global Threat Index’s Top 10
    • 2018.10 [DEFCONConference] DEF CON 26 CAR HACKING VILLAGE - Dan Regalado - Meet Salinas, 1st SMS commanded Car Infotainment RAT
    • 2018.10 [cybrary] “I smell a rat!” – AhMyth, not a Myth
    • 2018.10 [4hou] 산업 분야에서 RAT를 사용하여 공격하는 방법
    • 2018.10 [360] 원격 제어 트로이목마가 NetEase 공식 서명을 도용
    • 2018.10 [ncsc] RATs, Mimikatz and other domestic pests
    • 2018.10 [infosecinstitute] Interview with RaT, the High Council President of SOLDIERX
    • 2018.10 [vulnerability0lab] Facebook Inc via Instagram Business - Remote Access Token Vulnerability (Original Facebook Video)
    • 2018.10 [securityledger] Episode 114: Complexity at Root of Facebook Breach and LoJax is a RAT You Can’t Kill
    • 2018.10 [sophos] IP EXPO Europe 2018: Sophos experts talk AI, privacy vs security, and RATs
    • 2018.09 [kaspersky] Threats posed by using RATs in ICS
    • 2018.09 [kaspersky] Industrial networks in need of RAT control
    • 2018.09 [securelist] Threats posed by using RATs in ICS
    • 2018.08 [traffic] [2018-08-22] Unknown->RigEK->AZORult->BabylonRAT
    • 2018.08 [freebuf] Hero RAT: Telegram 기반 Android 악성코드
    • 2018.08 [4hou] 스팸 캠페인이 SettingContent-ms를 악용하여 FlawedAmmyy RAT 유포
    • 2018.08 [aliyun] Telegram 기반 Android 악성코드 HeroRAT 분석
    • 2018.08 [alienvault] Off-the-shelf RATs Targeting Pakistan
    • 2018.07 [k7computing] Weaponized.IQY: A Quest to Deliver the FlawedAmmyy RAT
    • 2018.07 [trendmicro] Spam Campaign Abusing SettingContent-ms Found Dropping Same FlawedAmmy RAT Distributed by Necurs
    • 2018.07 [k7computing] Weaponized.IQY: A Quest to Deliver the FlawedAmmyy RAT
    • 2018.07 [4hou] 고도로 복잡한 Parasite RAT가 다크 웹에 등장
    • 2018.07 [proofpoint] Parasite HTTP RAT cooks up a stew of stealthy tricks
    • 2018.07 [aliyun] Vermin RAThole 심층 분석
    • 2018.07 [proofpoint] TA505 Abusing SettingContent-ms within PDF files to Distribute FlawedAmmyy RAT
    • 2018.07 [welivesecurity] Vermin one of three RATs used to spy on Ukrainian government institutions
    • 2018.07 [freebuf] HeroRAT: 완전히 새로운 Telegram 기반 Android 원격 액세스 트로이목마
    • 2018.06 [heimdalsecurity] Security Alert: New Spam Campaign Delivers Flawed Ammyy RAT to Infect Victims’ Computers
    • 2018.06 [welivesecurity] HeroRAT: Telegram 기반 Android 원격 제어, Xamarin 프레임워크로 작성
    • 2018.06 [4hou] 미국 정부 최신 기술 경보: 북한 해커 조직 Hidden Cobra가 사용 중인 두 가지 RAT 및 웜 바이러스 주의
    • 2018.06 [4hou] NavRAT가 미북 정상회담을 한국 공격의 미끼로 이용
    • 2018.06 [360] NavRAT가 미북 회담 주제를 이용하여 한국 공격
    • 2018.05 [talosintelligence] NavRAT Uses US-North Korea Summit As Decoy For Attacks In South Korea
    • 2018.05 [myonlinesecurity] Necurs delivering Flawed Ammy RAT via IQY Excel Web Query files
    • 2018.05 [freebuf] 해킹된 Drupal 사이트가 채굴, 원격 제어 유포, 사기 이메일 발송에 사용됨
    • 2018.05 [andreafortuna] Malware VM detection techniques evolving: an analysis of GravityRAT
    • 2018.05 [360] GravityRAT: 인도를 APT 대상으로 한 2년간의 진화 역사
    • 2018.05 [pcsxcetrasupport3] A closer look at “NetSupport”(Rat) top 2 layers
    • 2018.05 [freebuf] 神话传奇: 계정 판매를 통해 WeChat 그룹에서 유포되는 원격 제어 트로이목마
    • 2018.04 [virusbulletin] GravityRAT malware takes your system's temperature
    • 2018.04 [360] 神话传奇 — 계정 판매 WeChat 그룹을 통해 유포되는 원격 제어 트로이목마
    • 2018.04 [talosintelligence] GravityRAT - The Two-Year Evolution Of An APT Targeting India
    • 2018.04 [UltraHacks] WebMonitor RAT - NO PORTFORWARD NEEDED + FREE VPN NEW
    • 2018.04 [4hou] 배틀그라운드 치트 원격 제어 트로이목마 분석
    • 2018.04 [freebuf] 배틀그라운드 치트 원격 제어 트로이목마 분석
    • 2018.04 [360] 배틀그라운드 치트 원격 제어 트로이목마 분석
    • 2018.04 [4hou] Digital Ocean을 이용한 원격 제어 인프라 구축
    • 2018.04 [flashpoint] RAT Gone Rogue: Meet ARS VBS Loader
    • 2018.04 [lookout] mAPT ViperRAT Found in Google Play
    • 2018.04 [bitdefender] RadRAT: An all-in-one toolkit for complex espionage ops
    • 2018.04 [paloaltonetworks] Say “Cheese”: WebMonitor RAT Comes with C2-as-a-Servic
    • 2018.04 [freebuf] DELPHI 해커 프로그래밍 (3): 간단한 원격 제어 원리 구현
    • 2018.04 [fireeye] Fake Software Update Abuses NetSupport Remote Access Tool
    • 2018.04 [freebuf] PowerShell-RAT: Python 기반 백도어 프로그램
    • 2018.03 [UltraHacks] Spynote v5.8 Android RAT | Tutorial | www.ultrahacks.org | Ultra Hacks
    • 2018.03 [360] TeleRAT: Telegram을 이용하여 이란 사용자를 표적으로 하는 Android 악성코드 재발견
    • 2018.03 [paloaltonetworks] TeleRAT: Another Android Trojan Leveraging Telegram’s Bot API to Target Iran
    • 2018.03 [4hou] 삼성 SmartCam 카메라에 10개 이상의 보안 취약점 발견, 원격 제어 및 영상 조작 가능
    • 2018.03 [360] OS X의 Coldroot RAT 크로스 플랫폼 백도어에 대한 상세 분석
    • 2018.03 [freebuf] 프런트엔드 블랙 매직: 원격 제어 주소 표시줄
    • 2018.03 [broadanalysis] EiTest campaign Hoefler Text Pop-up delivers NetSupport Manager RAT
    • 2018.03 [leavesongs] 프런트엔드 블랙 매직: 원격 제어 주소 표시줄
    • 2018.03 [broadanalysis] Fake Flash update leads to NetSupport RAT
    • 2018.03 [broadanalysis] EiTest campaign Hoefler Text Pop-up delivers NetSupport Manager RAT
    • 2018.03 [4hou] 고화질 무코드! 귀신 영화보다 더 짜릿하다! '기이한 인형' 원격 제어의 이 섬뜩한 노래를 들어보세요
    • 2018.03 [freebuf] 고화질 무코드! 귀신 영화보다 더 짜릿하다! '기이한 인형' 원격 제어의 이 섬뜩한 노래를 들어보세요
    • 2018.03 [360] 겁많은 사람은 주의! 귀신 영화보다 더 짜릿하다! '기이한 인형' 원격 제어의 이 섬뜩한 노래를 들어보세요
    • 2018.02 [broadanalysis] Fake Flash update leads to NetSupport RAT
    • 2018.02 [broadanalysis] EiTest campaign Hoefler Text Pop-up delivers NetSupport Manager RAT
    • 2018.02 [myonlinesecurity] Fake DHL notification delivers some sort of Java RAT
    • 2018.02 [4hou] 새로운 AndroRAT 변종이 만료된 Root 취약점을 이용하여 공격 기회를 노리고 있음
    • 2018.02 [objective] Tearing Apart the Undetected (OSX)Coldroot RAT
    • 2018.02 [trendmicro] New AndroRAT Exploits Dated Privilege Escalation Vulnerability, Allows Permanent Rooting
    • 2018.02 [360] 원격 제어 트로이목마가 '백색+흑색' 함정을 교묘히 설정: 온라인 쇼핑몰 도매상을 노려 돈을 갈취
    • 2018.01 [broadanalysis] EiTest campaign Hoefler Text Pop-up delivers NetSupport Manager RAT
    • 2018.01 [4hou] 블리자드 게임에 심각한 원격 제어 취약점 존재, 수억 사용자 영향
    • 2018.01 [riskiq] Espionage Campaign Leverages Spear Phishing, RATs Against Turkish Defense Contractors
    • 2018.01 [freebuf] NDAY 취약점 CVE-2017-11882와 0Day 취약점 CVE-2018-0802 조합으로 원격 제어 트로이목마 유포 샘플 분석
    • 2018.01 [broadanalysis] EiTest campaign Hoefler Text Pop-up delivers NetSupport Manager RAT
    • 2018.01 [netskope] Git Your RATs Here!
    • 2018.01 [redcanary] We Smell a RAT: Detecting a Remote Access Trojan That Snuck Past a User
    • 2018.01 [rsa] Malspam delivers BITTER RAT 01-07-2018
    • 2018.01 [freebuf] 모바일 C# 바이러스 '부활', 유명 앱 통신을 이용하여 원격 제어 및 개인정보 탈취
    • 2017.12 [tencent] CHM 파일을 통해 유포되는 Torchwood 원격 제어 트로이목마 분석
    • 2017.12 [avlsec] 모바일 C# 바이러스 '부활', 유명 앱 통신을 이용하여 원격 제어 및 개인정보 탈취
    • 2017.12 [broadanalysis] Fake Flash Player update delivers Net Support RAT
    • 2017.12 [netskope] TelegramRAT evades traditional defenses via the cloud
    • 2017.12 [4hou] Palo Alto Networks 최신 발견: UBoatRAT 원격 트로이목마 액세스 프로그램이 동아시아 침투
    • 2017.12 [TechnoHacker] RATs in a Nutshell
    • 2017.11 [paloaltonetworks] UBoatRAT Navigates
    • 2017.11 [buguroo] New banking malware in Brazil - XPCTRA RAT ANALYSIS
    • 2017.11 [traffic] [2017-11-18] KaiXinEK->RAT
    • 2017.11 [freebuf] CHM 파일을 통해 유포되는 Torchwood 원격 제어 트로이목마 분석
    • 2017.11 [qq] CHM 파일을 통해 유포되는 Torchwood 원격 제어 트로이목마 분석
    • 2017.11 [TechnicalMujeeb] A-RAt exploit Tool Remote Access Android using Termux App.
    • 2017.11 [securityintelligence] AutoIt 스크립트를 사용하여 AV 탐지를 우회하는 원격 제어 분석
    • 2017.11 [360] Powershell Empire로 AV 우회하여 원격 제어 구현
    • 2017.10 [riskiq] New htpRAT Gives Complete Remote Control Capabilities to Chinese Threat Actors
    • 2017.10 [lookout] JadeRAT mobile surveillanceware spikes in espionage activity
    • 2017.10 [buguroo] RAT Protection for Banking Customers That Works
    • 2017.10 [cylance] Cylance vs. Hacker’s Door Remote Access Trojan
    • 2017.10 [malwarebytes] 정상적인 Word 문서가 시작될 때 자동으로 악성 RTF 파일 다운로드(CVE-2017-8759 활용), 이 RTF 파일을 통해 최종 페이로드 다운로드 및 실행
    • 2017.10 [rsa] Malspam Delivers HWorm RAT October, 2017
    • 2017.09 [freebuf] [댓글 업데이트 '트로이목마' 작성자 답변] '노란 땅벌' 원격 제어 채굴 트로이목마 분석 및 추적
    • 2017.09 [intezer] Agent.BTZ/ComRAT 변종 분석
    • 2017.09 [360] EternalBlue 취약점을 이용하여 유포되는 RAT 분석
    • 2017.09 [UltraHacks] SilentBytes RAT 1.6.3c | Multi Administration Tool!
    • 2017.09 [freebuf] 뒤에는 또 뒤가 있다, 무료로 유포되는 Cobian 원격 제어 도구 뒤의 비밀
    • 2017.09 [360] 다른 사람의 무선 마우스를 원격 제어하는 방법: 마우스 하이재킹 내부 비밀 심층 폭로
    • 2017.09 [4hou] 피싱 플러그인 실전: 부주의한 개발자의 편집기를 자동으로 원격 제어로 변환하는 방법
    • 2017.09 [fortinet] 베트남 조직을 대상으로 한 APT 공격에 사용된 Rehashed 원격 제어 분석
    • 2017.09 [TechnoHacker] Arcom RAT: Is It Worth $3000?
    • 2017.08 [lookout] Android 원격 제어 xRAT
    • 2017.08 [paloaltonetworks] Updated KHRAT Malware Used in Cambodi
    • 2017.08 [JackkTutorials] How to make a HTTP RAT (#3)
    • 2017.08 [freebuf] 원격 제어 트로이목마가 백색 이용으로 신기술을 선보이다: 가짜 크랙 도구 뒤의 불법 거래 암류 폭로
    • 2017.08 [4hou] 원격 제어 트로이목마가 백색 이용으로 신기술을 선보이다: 가짜 크랙 도구 뒤의 불법 거래 암류 폭로
    • 2017.08 [fortinet] A Quick Look at a New KONNI RAT Variant
    • 2017.08 [freebuf] Photoshop을 원격 제어 도구(RAT)로 개조하여 활용하는 방법
    • 2017.08 [n0where] Koadic C3 COM Command & Control – JScript RAT
    • 2017.08 [cylance] Threat Spotlight: KONNI – A Stealthy Remote Access Trojan
    • 2017.08 [cylance] Cylance vs. KONNI RAT
    • 2017.08 [intezer] New Variants of Agent.BTZ/ComRAT Found: The Threat That Hit The Pentagon In 2008 Still Evolving; Part 1/2
    • 2017.08 [rsa] Malspam delivers Xtreme RAT 8-1-2017
    • 2017.07 [CodeColorist] How to turn Photoshop into a remote access tool
    • 2017.07 [pentestmag] Stitch – a Python written cross platform RAT
    • 2017.07 [freebuf] [BlackHat 2017] 샤오미 Ninebot 밸런스 스쿠터 국제판에 심각한 보안 취약점 존재, 공격자가 원격 제어 가능
    • 2017.07 [pentestingexperts] Hacking Android Smart Phone Using AhMyth Android RAT
    • 2017.07 [JackkTutorials] How to make a HTTP RAT (#2)
    • 2017.07 [ringzerolabs] Bladabindi RAT
    • 2017.07 [krebsonsecurity] Who is the GovRAT Author and Mirai Botmaster ‘Bestbuy’?
    • 2017.07 [JackkTutorials] How to make a HTTP RAT (#1)
    • 2017.06 [freebuf] 백색 이용의 집대성자: 새로운 원격 제어 트로이목마가 변신술을 선보이다
    • 2017.06 [pediy] [오리지널] 원격 제어 트로이목마의 행동 분석
    • 2017.06 [ColinHardy] JavaScript that drops a RAT - Reverse Engineer it like a pro
    • 2017.06 [4hou] 백색 이용의 집대성자: 새로운 원격 제어 트로이목마가 변신술을 선보이다
    • 2017.06 [360] 백색 이용의 집대성자: 새로운 원격 제어 트로이목마가 변신술을 선보이다
    • 2017.06 [freebuf] Metasploit 실험: 탐지 우회 페이로드 제작 + 임의의 '외부 네트워크' 호스트에 대한 원격 제어
    • 2017.06 [cylance] Cylance vs. FF-Rat Malware
    • 2017.06 [cylance] Threat Spotlight: Breaking Down FF-Rat Malware
    • 2017.06 [alienvault] Mac 플랫폼 최초의 MaaS(맬웨어 서비스) 악성코드 MacSpy 분석
    • 2017.05 [TechnoHacker] How to check if you're infected with a RAT in 10 seconds
    • 2017.05 [freebuf] 원격 제어 트로이목마의 VIP: 온라인 쇼핑 계정을 도용하여 가상 기프트 카드 구매
    • 2017.05 [pediy] [오리지널] 처음부터 고전적인 감염형 원격 제어 트로이목마 분석
    • 2017.05 [4hou] 원격 제어 트로이목마의 VIP: 온라인 쇼핑 계정을 도용하여 가상 기프트 카드 구매
    • 2017.05 [sec] 원격 제어 트로이목마의 VIP: 온라인 쇼핑 계정을 도용하여 가상 기프트 카드 구매
    • 2017.05 [360] 원격 제어 트로이목마의 VIP: 온라인 쇼핑 계정을 도용하여 가상 기프트 카드 구매
    • 2017.05 [aliyun] FlexiSpy For Android 원격 제어 백도어
    • 2017.05 [UltraHacks] Imminent Monitor RAT setup & New update review 2017
    • 2017.05 [TechnoHacker] How to spread your RAT
    • 2017.05 [esecurityplanet] Shodan Partners with Recorded Future to Detect Botnets and RATs
    • 2017.04 [alienvault] The Felismus RAT: Powerful Threat, Mysterious Purpose
    • 2017.04 [4hou] 20여 종의 Linksys 라우터에서 보안 취약점 발견, 원격 제어 가능
    • 2017.04 [freebuf] 주의, Android 원격 제어(spynote)가 업그레이드되었습니다...
    • 2017.04 [paloaltonetworks] Cardinal RAT Active for Over
    • 2017.04 [jpcert] RedLeaves - Malware Based on Open Source RAT
    • 2017.03 [TechnoHacker] What's the difference between http botnets and RATs?
    • 2017.03 [paloaltonetworks] Trochilus and New MoonWind RATs Used In Attack Against Thai Orga
    • 2017.03 [fireeye] WMImplant – A WMI Based Agentless Post-Exploitation RAT Developed in PowerShell
    • 2017.03 [4hou] CIA 사건 여파: 300여 종의 Cisco 스위치가 심각한 영향을 받았으며, 하나의 0day로 원격 제어 가능
    • 2017.03 [secist] Python 기반 원격 관리 도구(RAT) – Stitch
    • 2017.03 [trendmicro] MajikPOS 소개: PoS 악성코드와 RAT의 결합체.
    • 2017.03 [4hou] Proton RAT가 0day 취약점을 이용하여 새로운 변종 업그레이드, 최소 1200달러에 판매
    • 2017.02 [UltraHacks] SilentBytes RAT [beta] Windows 10 || PROMOTION ||
    • 2017.02 [UltraHacks] SilentBytes RAT Linux Ubuntu || PROMOTION ||
    • 2017.02 [UltraHacks] SilentBytes RAT 1.1 [BETA] Mac OS X || PROMOTION ||
    • 2017.02 [lookout] ViperRAT: The mobile APT targeting the Israeli Defense Force that should be on your radar
    • 2017.02 [talosintelligence] Go RAT, Go! AthenaGo points “TorWords” Portugal
    • 2017.02 [netskope] Decoys, RATs, and the Cloud: The growing trend
    • 2017.01 [malwarebytes] Mobile Menace Monday: AndroRAT Evolved
    • 2017.01 [malwarebytes] From a fake wallet to a Java RAT
    • 2016.12 [TechnoHacker] How to remotely execute a RAT on someone's PC
    • 2016.12 [cyber] The Kings In Your Castle Part 4 – Packers, Crypters and a Pack of RATs
    • 2016.11 [] Linux 원격 제어 분석
    • 2016.11 [] Linux 원격 제어 분석
    • 2016.11 [f] A RAT For The US Presidential Elections
    • 2016.11 [fidelissecurity] Down the H-W0rm Hole with Houdini's RAT
    • 2016.11 [4hou] Pastebin에 호스팅된 RAT 트로이목마가 시스템 블루스크린 유발
    • 2016.10 [malwarebytes] Get your RAT on Pastebin
    • 2016.10 [8090] 화웨이 P9 지문 잠금 해제, 원격 제어 콘센트로 웨이보 발송, 스마트 제품 보안 문제 우려
    • 2016.10 [sentinelone] GovRAT is Not New
    • 2016.10 [UltraHacks] [$25] Imment Monitor RAT setup
    • 2016.09 [securelist] TeamXRat: Brazilian cybercrime meets ransomware
    • 2016.09 [freebuf] 원격 제어 계정 도용 트로이목마가 850Game으로 위장하여 악행
    • 2016.09 [jimwilbur] DroidJack – A Quick Look at an Android RAT
    • 2016.09 [360] 원격 제어 계정 도용 트로이목마가 850Game으로 위장하여 악행
    • 2016.09 [countercept] Do you smell a rat?
    • 2016.09 [countercept] Do you smell a rat?
    • 2016.09 [freebuf] You dirty RAT: 지하 사이버 범죄 세계의 '먹이사슬'
    • 2016.08 [fortinet] German Speakers Targeted by SPAM Leading to Ozone RAT
    • 2016.08 [freebuf] WeChat에서 원격 코드 실행 취약점 발견, 원격 제어 가능
    • 2016.08 [trustlook] Trustlook Discovers a Remote Administration Tool (RAT) Android Malware
    • 2016.08 [id] XRat, Team, Corporacao
    • 2016.08 [f] NanHaiShu: RATing the South China Sea
    • 2016.07 [malwarenailed] Luminosity RAT - Re-purposed
    • 2016.07 [360] 합법적인 외관을 가진 원격 제어 트로이목마 — Game564 심층 분석
    • 2016.07 [fidelissecurity] Chasing Down RATs with Barncat
    • 2016.07 [n0where] Python Remote Access Tool: Ares
    • 2016.07 [360] H-WORM: 간단하면서도 활발한 원격 제어 트로이목마
    • 2016.06 [duo] Protecting Remote Access to Your Computer: RDP Attacks and Server Credentials for Sale
    • 2016.06 [cybereason] Permission to Execute: The Incident of the Signed and Verified RAT
    • 2016.06 [8090] 표적 공격에 사용되는 JavaScript 원격 제어 트로이목마 분석
    • 2016.06 [hackingarticles] HTTP RAT Tutorial for Beginners
    • 2016.06 [avlsec] 유명 앱을 사칭하여 악성 모듈 삽입, 양의 탈을 쓴 '늑대'가 왔다! WarThunder 원격 제어 트로이목마 경고
    • 2016.06 [cysinfo] Hunting APT RAT 9002 In Memory Using Volatility Plugin
    • 2016.06 [f] Qarallax RAT: Spying On US Visa Applicants
    • 2016.06 [qq] 원격 제어 트로이목마가 Windows 시스템 파일 취약점을 이용하여 공격 전개
    • 2016.06 [samvartaka] Dead RATs: Exploiting malware C2 servers
    • 2016.05 [freebuf] 심층: 원격 제어 트로이목마 Poison Ivy가 미얀마 및 기타 아시아 국가에서 확산
    • 2016.05 [trendmicro] Lost Door RAT: Accessible, Customizable Attack Tool
    • 2016.04 [pentestpartners] RATing through the Steam Workshop
    • 2016.04 [freebuf] DameWare 미니 원격 제어 취약점(CVE-2016-2345): 원격 컨트롤러를 자유자재로 사용하게 함
    • 2016.04 [paloaltonetworks] New Poison Ivy RAT Variant Targets Hong Kong Pro-Democracy
    • 2016.04 [sentinelone] Teaching an old RAT new tricks
    • 2016.04 [itsjack] RAT Threat Intelligence – A Very Simple Manual Technique
    • 2016.03 [TechnoHacker] How to port forward for any program and how to setup a DNS for RATs
    • 2016.03 [malwarebytes] Latest Steam Malware Shows Signs of RAT Activity
    • 2016.03 [freebuf] 다른 사람의 무선 마우스를 원격 제어하는 방법: mouseJack 내부 비밀 심층 폭로
    • 2016.03 [malwarebytes] This Steam Scam is a Rat Race
    • 2016.03 [itsjack] Imminent Monitor 4 RAT Analysis – Further Into The RAT
    • 2016.02 [TechnoHacker] How to get rid of a RAT [Very in depth]
    • 2016.02 [brindi] Advanced Techniques for Detecting RAT Screen Control
    • 2016.02 [mindedsecurity] RAT WARS 2.0: Advanced Techniques for Detecting RAT Screen Control
    • 2016.01 [fidelissecurity] Introducing Hi-Zor RAT
    • 2016.01 [alienvault] Trochilus RAT: Invading your Sandbox
    • 2016.01 [itsjack] Imminent Monitor 4 RAT Analysis – A Glance
    • 2016.01 [freebuf] '어둠의 도둑' 원격 제어 트로이목마 분석 보고서
    • 2016.01 [] Linux 원격 제어 분석
    • 2016.01 [ensilo] Cyber-Security in 120 Secs: 0-days, and a new RAT targeting APJ
    • 2016.01 [TechnoHacker] How to use all of Xtreme RAT's features
    • 2016.01 [freebuf] JSocket 원격 제어에 대한 분석
    • 2015.12 [paloaltonetworks] BBSRAT Attacks Targeting Russian Organizations Linked to Roam
    • 2015.12 [welivesecurity] Europol makes 12 arrests in Remote Access Trojan crackdown
    • 2015.11 [360] '큰 회색 늑대' 원격 제어 트로이목마 배후 진범 심층 발굴
    • 2015.11 [cylance] Cylance vs. GlassRAT
    • 2015.11 [rsa] Detecting GlassRAT using Security Analytics and ECAT
    • 2015.11 [freebuf] KillerRat: 이집트 해커가 개발한 Windows 플랫폼 대상 새로운 RAT
    • 2015.11 [freebuf] BT 천국 사이트 악성코드 삽입 사건 후속: '큰 회색 늑대' 원격 제어 트로이목마 분석 및 배후 진범 조사
    • 2015.11 [360] '큰 회색 늑대' 원격 제어 트로이목마 분석 및 배후 진범 조사
    • 2015.11 [freebuf] 암시장에서 인기 있는 무기 GovRAT: 악성코드 디지털 서명 플랫폼
    • 2015.11 [duo] Criminals Leverage Remote Access to Patient Data Applications
    • 2015.11 [fidelissecurity] A Stalker’s Best Friend: Inside JSocket’s Android Remote Access Tool Builder
    • 2015.10 [threatmetrix] How Contextual Fraud Prevention Can Turn Banks into RAT (Remote Access Trojan) Catchers
    • 2015.10 [deepsec] DeepSec Talk: Got RATs? Enter Barn Cat (OSint)
    • 2015.10 [360] 이색 원격 제어: 트로이목마가 상용 원격 제어 소프트웨어를 경유하여 은닉 실행 구현
    • 2015.10 [freebuf] 이색 원격 제어: 트로이목마가 상용 원격 제어 소프트웨어를 경유하여 은닉 실행 구현
    • 2015.10 [hackingarticles] Hack Android Devices using Omni RAT
    • 2015.10 [duo] Remote Access Trojan (RAT) Targets Windows Environments
    • 2015.09 [trustwave] Quaverse RAT: Remote-Access-as-a-Service

    Read more

    도구 다운로드