ShellClient RAT

Aliases: GhostShell

First seen
2022-06-01 00:00:00
Malware type
rat
Family
Malware family
Profile updated
2026-07-07 13:11:20

Targeted industries: government-and-public-sector technology-and-telecommunications

Context

ShellClient RAT, also known as GhostShell, is a remote access trojan used primarily for cyber-espionage purposes. It has been identified targeting government and technology sectors.

Reports & references

  • Microsoft — Iranian Targeting Of It Sector On The Rise (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Shellclient (report)
  • cybereason.com — Operation Ghostshell Novel Rat Targets Global Aerospace And Telecoms Firms (report)

External references