MechaFlounder — Malware Profile

MechaFlounder is a python-based remote access tool (RAT) that has been used by APT39. The payload uses a combination of actor developed code and code snippets freely available online in development communities.

MITRE ATT&CK techniques (8)

Attributed threat actors

Read the full analysis on IntelFusions