Coldroot

First seen
2017-01-01 00:00:00
Malware type
rat
Family
Malware family
Profile updated
2026-07-07 15:41:52

Context

Coldroot, a remote access trojan (RAT), is still undetectable by most antivirus engines, despite being uploaded and freely available on GitHub for almost two years. The RAT appears to have been created as a joke, "to Play with Mac users," and "give Mac it's rights in this [the RAT] field," but has since expanded to work all three major desktop operating systems — Linux, macOS, and Windows— according to a screenshot of its builder extracted from a promotional YouTube video.

Reports & references

  • bleepingcomputer.com — Coldroot Rat Still Undetectable Despite Being Uploaded On Github Two Years Ago (report)
  • github.com — Coldroot (report)

External references