<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title>RAT - Tag - The handbag of Cryptax</title><link>https://cryptax.github.io/tags/rat/</link><description>RAT - Tag - The handbag of Cryptax</description><generator>Hugo -- gohugo.io</generator><language>en-us</language><managingEditor>crypto.maniak@gmail.com (Cryptax)</managingEditor><webMaster>crypto.maniak@gmail.com (Cryptax)</webMaster><lastBuildDate>Fri, 31 Jul 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://cryptax.github.io/tags/rat/" rel="self" type="application/rss+xml"/><item><title>LabubaRAT anti-analysis features</title><link>https://cryptax.github.io/posts/labubarat/</link><pubDate>Fri, 31 Jul 2026 00:00:00 +0000</pubDate><author>cryptax</author><guid>https://cryptax.github.io/posts/labubarat/</guid><description><![CDATA[LabubaRAT is a Remote Access Tool (RAT) implemented in Rust. It was discovered and analyzed by two researchers at Blackpoint Cyber’s Adversary Pursuit Group.
Usually, when there&rsquo;s one technical analysis, people tend to think it&rsquo;s &ldquo;enough&rdquo;. In reality, in complex malware such as this one, there are always several different angles to look into and that can&rsquo;t be covered in a single blog post.
In this blog post, I am going to cover techniques the malware author used to deceive the analyst.]]></description></item></channel></rss>