Cisco Talos published IOCs ↗
- Evidence class
- provider reported
- Source family label
- njRAT - S0385
- Source confidence
- Not reported
- Observed
- 2023-07-13 11:00 UTC
- Retrieved
- 2026-10-08 05:42 UTC
Name of ATT&CK software | [njRAT](https://attack.mitre.org/software/S0385) is a remote access tool (RAT) that was first observed in 2012. It has been used by threat actors in the Middle East.(Citation: Fidelis njRAT June 2013)
2023/07/malicious-campaigns-target-entities-in-ukraine-poland.jsonNetwork addresses are displayed in defanged form.
No file hashes or network indicators were published in this record.