
Practical Threat Intelligence and Data-Driven Threat Hunting
By :

Quasar RAT is an open source RAT for Windows developed using C# and freely available on GitHub. Quasar RAT provides an easy-to-use user interface and high stability, which makes it an attractive tool for a variety of threat actors. It is a common practice among adversaries to make use of publicly available tools in their attacks in order to make difficult the attribution efforts. According to the mapping provided by the ATT&CK team (https://attack.mitre.org/software/S0262/), Quasar RAT is capable of the following techniques and sub-techniques :
Figure 8.32 – Quasar RAT capabilities according to MITRE ATT&CK
Before moving into executing and hunting Quasar RAT, let's learn a bit about some of the real-world cases and threat actors that have leveraged Quasar RAT for malicious purposes.
One of the most common problems when studying the advanced persistent threats activity is in the different...
Change the font size
Change margin width
Change background colour