TeamXRat
0 incidentes
0 paises
0 sectores
apt BR Ultimo: -
Aliases: CorporacaoXRat, CorporationXRat
TeamXRat is a Brazilian cyber espionage group that first emerged around 2013, with its earliest malware samples observed in that year. The group's primary motivation is the extraction of sensitive information, primarily targeting financial institutions, government agencies, and telecommunication organizations within Latin America, particularly Brazil. TeamXRat is distinguished by its use of custom Remote Access Trojans (RATs), which are often written predominantly in Portuguese and sometimes leverage legitimate software like TeamViewer for command and control. The group has demonstrated an evolution in its operational methods, including an increase in the sophistication of its spear-phishing lures and the incorporation of social engineering techniques over time. TeamXRat also operates under the names Win.Xpan, CorporacaoXRat, and CorporationXRat.
Sectores objetivo (SOCRadar)
Public AdministrationBanking