Coldroot
- First seen
- 2017-01-01 00:00:00
- Malware type
- rat
- Family
- Malware family
- Profile updated
- 2026-07-07 15:41:52
Context
Coldroot, a remote access trojan (RAT), is still undetectable by most antivirus engines, despite being uploaded and freely available on GitHub for almost two years. The RAT appears to have been created as a joke, "to Play with Mac users," and "give Mac it's rights in this [the RAT] field," but has since expanded to work all three major desktop operating systems — Linux, macOS, and Windows— according to a screenshot of its builder extracted from a promotional YouTube video.
Reports & references
- bleepingcomputer.com — Coldroot Rat Still Undetectable Despite Being Uploaded On Github Two Years Ago (report)
- github.com — Coldroot (report)