logo

Brute Ratel cracked and shared across the Cybercriminal Underground

ID: 0cd26730-d76e-5b19-a3d5-03c39e2e6a05

STIX ID: report--0cd26730-d76e-5b19-a3d5-03c39e2e6a05

Feed Name: BushidoToken Blog

Threat Score
75/100

Date Published: 2022-09-29

Date Updated: 2026-06-11

...
...

Brute Ratel C4 (BRC4), a commercial red-team framework leaked and cracked in 2022, is proliferating across Russian- and English-speaking cybercrime forums; threat actors and ransomware affiliates are adopting it because of its ability to generate EDR/AV-evasive shellcode, and it has been observed in the wild alongside Cobalt Strike during an ALPHV/BlackCat engagement — defenders are advised to emphasize behavior-based detection over simple IOC blocking.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.