ApolloRat: Evasive Malware Compiled using Nuitka
ID: f827aa52-5234-5b4e-b990-c3118c78dc3a
STIX ID: report--f827aa52-5234-5b4e-b990-c3118c78dc3a
Feed Name: Cyble Blog
Threat Score
ApolloRAT is a Python-based Remote Access Trojan sold publicly that uses Discord for C2 and is compiled with Nuitka to increase evasiveness; the report details its commands and capabilities (password stealing, remote shell, file upload/download, AV/firewall disable, VM detection, system control), provides sample hashes as IOCs, and recommends defensive measures.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
