RatHat 악성코드는 ADB를 이용해 삭제 후에도 지속적으로 접근을 유지합니다.
새로운 Android 악성코드 RatHat이 발견되었습니다. 이 악성코드는 중국의 위협 행위자에 의해 운영되는 것으로 평가되며, AI 기반 시스템을 통해 감염된 장치를 탐색하고 제어합니다. RatHat은 주로 SMS 피싱 및 악성 광고를 통한 가운데 비정상적인 다운로드 포털을 이용해 배포됩니다.
RatHat malware uses ADB to maintain access after uninstallation.
A new Android malware called RatHat has been identified, believed to be operated by China-based threat actors. It features an AI-powered system that allows it to navigate and control infected devices. RatHat is primarily distributed through targeted smishing and malvertising campaigns that lead to deceptive third-party download portals.