TF-MAL-apk.wolf_rat
📛 Threat Title
Malware family: WolfRAT
Description
ThreatFox malware family `apk.wolf_rat`. Printable name: WolfRAT.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:attack.mitre.org
WolfRAT is malware based on a leaked version of Dendroid that has primarily targeted Thai users. WolfRAT has most likely been operated by the now defunct organization Wolf Research.
-
web:blog.talosintelligence.com
Cisco Talos has discovered a new Android malware based on a leak of the DenDroid malware family . We named this malware " WolfRAT " due to strong links between this malware (and the command and control (C2) infrastructure) and Wolf Research, an infamous organization that developed interception and espionage-based malware and was publicly described ...
-
web:blogs.cisco.com
Cisco Talos has discovered a new Android malware based on a leak of the DenDroid malware family . We named this malware " WolfRAT " due to strong links between this malware (and the command and control (C2) infrastructure) and Wolf Research, an infamous organization that developed interception and espionage-based malware and was publicly ...
-
web:cybersecuritynews.com
Two sophisticated Linux rootkits are posing increasingly serious threats to network security by exploiting eBPF technology to hide their presence from traditional detection systems. BPFDoor and Symbiote, both originating from 2021, represent a dangerous class of malware that combines advanced kernel-level access with powerful evasion capabilities.
-
web:openhunting.io
(Talos) Cisco Talos has discovered a new Android malware based on a leak of the { {Dendroid}} malware family . We named this malware 'WolfRAT' due to strong links between this malware (and the command and control (C2) infrastructure) and Wolf Research, an infamous organization that developed interception and espionage-based malware and was ...
-
web:redcanary.com
Extended Berkeley Packet Filter (eBPF) is beginning to transform the Linux malware landscape. Here's what defenders should look out for.
-
web:rewterz.com
After being installed on an Android device, WolfRAT provides the operators with various capabilities, such as information stealing and management of the malware . Researchers identified four variants of the RAT with minor changes between each version.
-
web:www.bitdefender.com
According to the advisory (FLASH-20260219-001), cybercriminals are increasingly deploying sophisticated malware — particularly variants of the Ploutus family — to force Automated Teller Machines (ATMs) to dispense cash without any legitimate transaction or bank authorization.
-
web:www.fortinet.com
FortiGuard Labs discovered new Symbiote and BPFDoor variants exploiting eBPF filters to enhance stealth through IPv6 support, UDP traffic, and dynamic port hopping for covert C2 communication.
-
web:www.researchgate.net
Prevention and detection of eBPF-based malware is also explored, with the goal of providing organizations or legitimate users of eBPF techniques to harden their systems against eBPF-based malware ...
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.