AIIC AI Intelligence Centre

SOURCE-LINKED INTELLIGENCE

RatHat Android Malware Abuses ADB to Retain Shell Access After Uninstall

The Hacker News · article · Sep 18, 2026 · UTC

Cybersecurity researchers have flagged a new Android malware called RatHat that's assessed to be operated by China-based threat actors and features an artificial intelligence (AI)-powered system to navigate and control compromised devices. "Distributed primarily via targeted smishing (SMS/text phishing) and malvertising campaigns leading to deceptive third-party download portals, RatHat uses

Read original source ↗ Open in workspace

recordType
article
region
Global

Evidence & attribution

First collected: 2026-09-19T20:26:32.566Z. This is not the publication date.