GOGINRAT

GOGINRATGoginRAT

Description

GoginRAT is a remote access trojan written in Go, used by the SilkParasite activity cluster and observed by Bitdefender in Central Asia. Bitdefender notes development artefacts across this cluster's newer implants that suggest AI-assisted coding, including test functions left in shipped builds and placeholder cryptographic material such as a literal change_this_key. Delivery relies on DLL sideloading through renamed legitimate binaries.
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.