s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-elf.krasue_rat

📛 Threat Title

Malware family: Krasue RAT

Category: Krasue RAT First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `elf.krasue_rat`. Printable name: Krasue RAT.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (10)

  • web:blackswan-cybersecurity.com

    Krasue RAT Linux Malware SUMMARY Krasue is a remote access trojan ( RAT ) designed for Linux systems, specifically within telecommunications companies in Thailand. Krasue was identified by security researchers at Group-IB and has been seen successfully evading detection since 2021.

  • web:blog.sucuri.net

    Learn what a Remote Access Trojan is, how RATs work, the risks they pose, and how to protect against infections. We cover the basics, examine real incidents where websites spread RAT infections, and provide practical advice for securing your devices against a RAT .

  • web:github.com

    For educational purposes only, exhaustive samples of 500+ classic/modern trojan builders including screenshots. - Cryakl/Ultimate- RAT -Collection

  • web:hivepro.com

    Chaos RAT (Remote Access Trojan) is a cross-platform malware written in Go, originally released in 2022 as an open-source remote administration tool. Designed for legitimate system management, it supports both Windows and Linux platforms. However, its powerful capabilities quickly attracted cybercriminals, who weaponized the tool for malicious operations. By 2024-2025, Chaos RAT had evolved ...

  • web:malpedia.caad.fkie.fraunhofer.de

    Details for the Krasue RAT malware family including references, samples and yara signatures.

  • web:securityboulevard.com

    This allows the malware to adapt to different Linux kernel versions, making identification and removal challenging. Security researchers at Group-IB said that the primary objective of Krasue RAT is to maintain access to the host system.

  • web:undercodetesting.com

    Introduction Remote Access Trojans ( RATs ) are a growing cybersecurity threat, enabling attackers to gain unauthorized control over victims' devices, including screen capture, camera access, and credential theft. This article explores RAT detection techniques, mitigation strategies, and the evolving threat landscape. Learning Objectives Identify common RAT behaviors and indicators of ...

  • web:www.bleepingcomputer.com

    Security researchers discovered a remote access trojan they named Krasue that is targeting Linux systems of telecommunications companies and managed to remain undetected since 2021.

  • web:www.group-ib.com

    Group-IB has discovered a new Linux Remote Access Trojan ( RAT ) that has been leveraged by cybercriminals looking to stealthily maintain access to the networks of targeted companies, which were exclusively based in Thailand.

  • web:www.redpacketsecurity.com

    Security researchers discovered a remote access trojan they named Krasue that is targeting Linux systems of telecommunications companies and managed to remain undetected since 2021. They found that Krasue's binary includes seven variants of a rootkit that supports multiple Linux kernel versions and is based on code from three open-source projects. According to researchers at cybersecurity ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.