RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
Security

RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims

The Hacker News · Sep 28, 2026

Back to News
RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
Security September 28, 2026

RatHat's operators build and publish the Android banking trojan and control infected phones from a web console, according to security company Cleafy. Cleafy has traced nearly 100 deployments of that console since April 2026. It said this fits a malware-as-a-service model, in which each customer runs a separate copy. The console stores what the malware collects from each phone,

Read original on The Hacker News

Want to stay informed about new business solutions?

Follow us

Ready to build a better digital experience?

We create modern multilingual websites, integrate external services and automate content workflows for growing businesses.