CuraSec

Learn archived

Flying Eagle Android RAT Source Code Circulates; 170 C2 Servers Found

2026-07-29 13:07 UTC · The Hacker News · read the source ↗ #android-rat#mobile-malware#threat-intel
  • Engineer — Skip
  • SOC/IR — Learn: The 170 identified C2 servers and certificate patterns provide threat-intel context, but the campaign specifically targets Chinese consumers via a fake government app — limited detection priority for enterprise estates unless mobile threat intel feeds need updating.
  • Leader — Skip
This entry was curated and judged by AI (Claude) with automated enrichment (CISA KEV / EPSS / public PoC). Verify against the original source before acting. Found a bad verdict? Report it — confirmed errors go to the corrections log.