threat-intel
Flying Eagle Android RAT Traces Found on 170 Servers as Source Code Circulates
High
Summary
A remote access trojan (RAT) called Flying Eagle, along with a related control kit called Night Dragon, is circulating through criminal Telegram channels. Researchers have identified 170 servers hosting the RAT framework, linked to a fake Public Security service application targeting Android users in China. The framework allows for payment-password capture, screen recording, and phishing attacks, and is associated with claims of compromised infrastructure and data exfiltration.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
