RAT in Telegram

Remote Access Trojan (RAT) exploits Telegram platform in command-and-control infrastructure to steal data. The attack begins with ToxicEye operators creating a Telegram account and a bot. ToxicEye RAT performs a variety of functions: scanning for, and stealing credentials, computer OS data, browser history, clipboard content, and cookies. It also has an option for operators to transfer and delete files, kill PC processes and hijack task management.

