logo

Trolling as a Service: How the New CrystalX RAT Uses “Prankware” to Torture Its Victims

ID: 46b8661c-a478-58e0-a6db-977a02e5c907

STIX ID: report--46b8661c-a478-58e0-a6db-977a02e5c907

Feed Name: securityonline.info

Threat Score
72/100

Date Published: 2026-04-07

Date Updated: 2026-04-23

Author: Ddos

...
...

Kaspersky researchers identified CrystalX RAT (aka Webcrystal) — a Malware‑as‑a‑Service promoted via Telegram since March 2026 — that combines traditional backdoor/stealer/keylogger functionality with a unique “prankware” module designed to annoy victims. The malware, written in Go and under active development, has been linked to infection attempts largely in Russia but is capable of broader cross‑platform impact; the report warns professionals to watch for unauthorized remote access and unusual user‑interaction disruptions that may indicate compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.