Mirage

First seen
2012-04-01 00:00:00
Malware type
rat
Family
Malware family
Last IoC activity
2026-07-15 16:45:04
Profile updated
2026-07-07 12:39:50

Targeted industries: government-and-public-sector financial-services

Targeted regions: country_code:us country_code:in

Context

Mirage is a Remote Access Trojan (RAT) primarily used for cyber espionage by threat actors. It is known for targeting government and public sector organizations and financial services in several regions, notably the United States and India.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Mirage_Auto (yara-rule)

Reports & references

  • intezer.com — Miragefox Apt15 Resurfaces With New Tools Based On Old Ones (report)
  • secureworks.com — Bronze Palace (report)
  • web.archive.org — Globalthreatintelreport (report)
  • st.drweb.com — Study Of The Apt Attacks On State Institutions In Kazakhstan And Kyrgyzstan En (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Mirage (report)

External references