Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 20:07:26 UTC Home > List all groups > List all tools > List all groups using tool AsyncRAT Tool: AsyncRAT Names AsyncRAT Category Tools Type Backdoor, Keylogger Description (Carbon Black) AsyncRAT is a Remote Access Tool (RAT) designed to remotely monitor and control other computers through a secure encrypted connection. It is an open source remote administration tool, however, it could also be used maliciously because it provides functionality such as keylogger, remote desktop control, and many other functions that may cause harm to the victim’s computer. In addition, AsyncRAT can be delivered via various methods such as spear-phishing, malvertising, exploit kit and other techniques. Information MITRE ATT&CK https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=e357b9fa-cf31-4f75-939a-40cc5d94b45e Page 1 of 2 Malpedia AlienVault OTX Last change to this tool card: 16 August 2025 Download this tool card in JSON format All groups using tool AsyncRAT Changed Name Country Observed APT groups   Blind Eagle 2018-Nov 2024     Earth Berberoka 2022     Operation Comando [Unknown] 2018     Operation Layover 2013     Operation LiberalFace, MirrorFace 2019-Aug 2024     Operation Spalax [Unknown] 2020     TA2541 [Unknown] 2017     TA558 [Unknown] 2018-Jun 2023     Vendetta, TA2719 2020   Other groups   CoralRaider 2023-Feb 2024   10 groups listed (9 APT, 1 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=e357b9fa-cf31-4f75-939a-40cc5d94b45e https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=e357b9fa-cf31-4f75-939a-40cc5d94b45e Page 2 of 2