THREATOPS
THREAT OPSThreat News › SloppyRAT: A New Tool For Ransomware Attacks

SloppyRAT: A New Tool For Ransomware Attacks

medzscaler_threatlabzPublished 2026-09-10

IntroductionIn June 2026, Zscaler ThreatLabz identified a new malware family, tracked as SloppyRAT, that is likely leveraged by a ransomware-related threat actor. ThreatLabz observed SloppyRAT being delivered through a multi-stage ClickFix infection chain. The malware supports a variety of features including a large number of built-in PowerShell-like commands, encrypted code blocks, EtherHidi

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://www.zscaler.com/blogs/security-research/sloppyrat-new-tool-ransomware-attacks