Cisco Talos published IOCs ↗
- Evidence class
- provider reported
- Source family label
- 4H RAT - S0065
- Source confidence
- Not reported
- Observed
- 2026-07-21 02:38 UTC
- Retrieved
- 2026-10-08 06:24 UTC
Name of ATT&CK software | [4H RAT](https://attack.mitre.org/software/S0065) is malware that has been used by [Putter Panda](https://attack.mitre.org/groups/G0024) since at least 2007. (Citation: CrowdStrike Putter Panda)
2026/07/chaos-msarat.jsonNetwork addresses are displayed in defanged form.
No file hashes or network indicators were published in this record.