Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 19:50:14 UTC Home > List all groups > List all tools > List all groups using tool RatSnif Tool: RatSnif Names RatSnif Category Malware Type Backdoor, Info stealer, Poisoning Description (Cylance) Blackberry Cylance threat researchers have analyzed the Ratsnif trojans, which offer a veritable swiss-army knife of network attack techniques. The trojans, under active development since 2016, combine capabilities like packet sniffing, gateway/device ARP poisoning, DNS poisoning, HTTP injection, and MAC spoofing. Information Malpedia AlienVault OTX Last change to this tool card: 24 April 2021 Download this tool card in JSON format All groups using tool RatSnif Changed Name Country Observed APT groups   APT 32, OceanLotus, SeaLotus 2013-Aug 2024 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=70ab6d21-84c2-447f-9b38-6433d07ff001 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=70ab6d21-84c2-447f-9b38-6433d07ff001 Page 1 of 1