Action RAT (202781a3-d481-4984-9e5a-31caafc20135)
Action RAT is a remote access tool written in Delphi that has been used by SideCopy since at least December 2021 against Indian and Afghani government personnel.[MalwareBytes SideCopy Dec 2021]
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Action RAT (202781a3-d481-4984-9e5a-31caafc20135) | Tidal Software | SideCopy (31bc763e-623f-4870-9780-86e43d732594) | Tidal Groups | 1 |