Brute Ratel cracked and shared across the Cybercriminal Underground
ID: 0cd26730-d76e-5b19-a3d5-03c39e2e6a05
STIX ID: report--0cd26730-d76e-5b19-a3d5-03c39e2e6a05
Feed Name: BushidoToken Blog
Threat Score
Brute Ratel C4 (BRC4), a commercial red-team framework leaked and cracked in 2022, is proliferating across Russian- and English-speaking cybercrime forums; threat actors and ransomware affiliates are adopting it because of its ability to generate EDR/AV-evasive shellcode, and it has been observed in the wild alongside Cobalt Strike during an ALPHV/BlackCat engagement — defenders are advised to emphasize behavior-based detection over simple IOC blocking.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
