Unmasking AsyncRAT: Navigating the labyrinth of forks
ID: 98ff26eb-f617-5c43-a9f0-c9c9398c935a
STIX ID: report--98ff26eb-f617-5c43-a9f0-c9c9398c935a
Feed Name: WeLiveSecurity (ESET Research)
This ESET research blogpost analyzes the AsyncRAT ecosystem and its many forks, tracing origins, a fork hierarchy, and prominent variants (notably DcRat and VenomRAT) while detailing capabilities such as credential theft, AMSI/ETW bypasses, ransomware plugins, USB spreading, clippers, and other specialized plugins; it also provides identification methods, a comprehensive IoC list, and MITRE ATT&CK mappings to help defenders detect and attribute these widely reused open-source RAT variants.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
