New Windows RAT can be controlled via a Telegram channel
Security researchers have discovered a new remote access trojan (RAT) being advertised on Russian-speaking underground hacking forums.
Named T-RAT, the malware is available for only $45, and its primary selling point is the ability to control infected systems via a Telegram channel, rather than a web-based administration panel. It's author claims this gives buyers faster and easier access to infected computers from any location, allowing threat actors to activate data-stealing features as soon as a victim is infected, before the RAT's presence is discovered.
For this, the RAT's Telegram channel supports 98 commands that, when typed inside the main chat window, allow the RAT owner to retrieve browser passwords and cookies, navigate the victim's filesystem and search for sensitive data, deploy a keylogger, record audio via the microphone, take screenshots of the victim's desktop, take pictures via webcam, and retrieve clipboard contents.