CyberSecurityBoardThreat Intel · CVEs · Products

Tag: RAT

Malware

CornFlake RAT

Go-based remote access trojan delivered via fake updates in the CaptiveCrunch campaign. It captures screenshots, steals credentials, and provides remote shell access.

CornFlake credential theft Go RAT
August 1, 2026
Malware

SpyNote RAT Used in WindRelay Attacks

SpyNote is a known remote access trojan (RAT) that provides Accessibility Service access, allowing fraudsters to silently sideload and activate the WindRelay…

Android malware RAT remote access
July 29, 2026
Malware

DEV#POOPER: Remote Access Trojan Family

DEV#POOPER is a malware family that delivers remote access trojans (RATs) via compromised npm packages, often using blockchain-based command-and-control infrastructure.

blockchain C2 DEV#POOPER npm RAT
July 29, 2026
Malware

clientCode: Node.js RAT Payload

clientCode is a heavily obfuscated Node.js remote access trojan (RAT) that uploads files, retrieves JavaScript, collects host details, and reads clipboard data,…

clientCode Node.js obfuscated RAT
July 29, 2026
Malware

WebDAV Malware Campaign

A malware campaign using WebDAV shares to deliver infostealers and RATs, leveraging AI-assisted tooling and multiple CVEs.

infostealer malware phishing RAT
July 20, 2026