#IDATLoader

2024-04-10

In the part two blog, Rapid7 provides a technical analysis of the typo squatted malvertising, PowerShell scripts, RAR contents, and the IDAT Loader. IOC provided. 🔗 rapid7.com/blog/post/2024/04/1

#threatintel #IDATLoader #BruteRatel #malvertising #IOC

2024-03-28

Rapid7 published a blog post (first of a two-part blog series) on a case study of IDAT Loader malware being distributed via a FakeUpdates campaign. The final payload is a Brute Ratel C4 badger. Rapid7 describes the attack chain, provides a technical analysis of the IDAT Loader, and provides IOC, MITRE ATT&CK TTPs and known sandbox usernames and analysis tools 🔗 rapid7.com/blog/post/2024/03/2

#threatintel #IDATLoader #BruteRatel #badger #IOC

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst