AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← Catalog
REFERENCEPUBLIC INTELLIGENCE

WarzoneRAT - S0670

Name of ATT&CK software | [WarzoneRAT](https://attack.mitre.org/software/S0670) is a malware-as-a-service remote access tool (RAT) written in C++ that has been publicly available for purchase since at least late 2018.(Citation: Check Point Warzone Feb 2020)(Citation: Uptycs Warzone UAC Bypass November 2020)

Reference details

Primary displayed family label
WarzoneRAT - S0670
Source context
2023/03/YoroTrooper.json
First reported
2022-12-20 11:25 UTC
Last reported
2023-03-14 10:51 UTC
Catalog updated
2026-10-08 04:36 UTC

Source family labels

WarzoneRAT - S0670

Tags

misp:galaxy-name="Malware"misp:galaxy-type="mitre-malware"misp-galaxy:mitre-malware="WarzoneRAT - S0670"

Published indicators

Network addresses are displayed in defanged form.

No file hashes or network indicators were published in this record.

Source observations

Cisco Talos published IOCs ↗

Evidence class
provider reported
Source family label
WarzoneRAT - S0670
Source confidence
Not reported
Observed
2023-03-14 10:51 UTC
Retrieved
2026-10-08 04:36 UTC

Cisco Talos published IOCs ↗

Evidence class
provider reported
Source family label
WarzoneRAT - S0670
Source confidence
Not reported
Observed
2022-12-20 11:25 UTC
Retrieved
2026-10-08 04:34 UTC

Research references