Castle RAT: Analysis and Detections
Автор: Splunk
Загружено: 2025-12-02
Просмотров: 148
Описание: Castle RAT: Expanded coverage for the Castle RAT remote access trojan, which enables adversaries to execute commands, exfiltrate files, log keystrokes, and capture screens during targeted intrusion campaigns. Tagged multiple existing detections related to persistence, task creation, and suspicious process behavior, and introduced new analytics for unusual browser flag launches, ComputerDefaults-based UAC bypass, and handle duplication in known bypass binaries to improve visibility into Castle RAT infection chains, privilege escalation, and long-term access mechanisms.
Повторяем попытку...
Доступные форматы для скачивания:
Скачать видео
-
Информация по загрузке: