MagicRAT — Malware Profile

MagicRAT is a remote access tool developed in C++ and exclusively used by the Lazarus Group threat actor in operations. MagicRAT allows for arbitrary command execution on victim machines and provides basic remote access functionality.

MITRE ATT&CK techniques (13)

IntelFusions coverage

Attributed threat actors

Read the full analysis on IntelFusions