Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 15:51:51 UTC Home > List all groups > List all tools > List all groups using tool ActionRAT Tool: ActionRAT Names ActionRAT Category Malware Type Backdoor Description (Talos) ActionRAT is another Delphi-based RAT used in SideCopy’s operations. At first glance, it looks quite similar to Allakore RAT but is distinct in its implementation. We also found a C#-based version of the RAT, indicating that the attackers have ported it to the Dot Net platform, as well. Information AlienVault OTX Last change to this tool card: 10 August 2021 Download this tool card in JSON format All groups using tool ActionRAT Changed Name Country Observed APT groups   SideCopy 2019-Mar 2025 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=12b53b3b-9f41-4da5-b261-2cda27b284bb https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=12b53b3b-9f41-4da5-b261-2cda27b284bb Page 1 of 1