kbandla / APTnotes

Various public documents, whitepapers and articles about APT campaigns
3.43k stars 879 forks source link

RSA GlassRAT report #229

Closed threatlead closed 8 years ago

threatlead commented 8 years ago

"Evidence suggests that the tool is being used as part of a very targeted campaign, focused on Chinese nationals in commercial organizations. GlassRAT’s command and control structure has exhibited brief overlap with C2 that was identified in campaigns associated with malware originally reported in 2012 that targeted government and military organizations in the Pacific Region." --- https://blogs.rsa.com/peering-into-glassrat/

ghost commented 8 years ago

added in 2cb423a primarily for indicator and named tool recognition