Unmasking Rafel RAT: Android Infiltration Campaign
ID: 7e232808-a4e7-5943-81da-aa0a6aac8f29
STIX ID: report--7e232808-a4e7-5943-81da-aa0a6aac8f29
Feed Name: Zimperium Blog
Threat Score
Rafel RAT is an Android Remote Access Trojan sold on underground forums that can infiltrate devices via phishing and malicious apps, establish C2 connections, exfiltrate data, capture credentials, and perform surveillance (camera/microphone). The report outlines its origins, operation stages, harmful capabilities, and recommends mobile endpoint protection, user education, and timely updates to mitigate risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
