GOGINRAT
GOGINRATGoginRAT
Description
GoginRAT is a remote access trojan written in Go, used by the SilkParasite activity cluster and observed by Bitdefender in Central Asia. Bitdefender notes development artefacts across this cluster's newer implants that suggest AI-assisted coding, including test functions left in shipped builds and placeholder cryptographic material such as a literal change_this_key. Delivery relies on DLL sideloading through renamed legitimate binaries.