PingRAT - Secretly Passes C2 Traffic Through Firewalls Using ICMP Payloads


PingRAT secretly passes C2 traffic through firewalls using ICMP payloads.

Features:

  • Uses ICMP for Command and Control
  • Undetectable by most AV/EDR solutions
  • Written in Go

Installation:

Download the binaries

or build the binaries and you are ready to go:

$ git clone https://github.com/Nemesis0U/PingRAT.git$ go build client.go$ go build server.go

Usage:

Server:

./server -hUsage of ./server:  -d string        Destination IP address  -i string        Listener (virtual) Network Interface (e.g. eth0)

Client:

./client -hUsage of ./client:  -d string        Destination IP address  -i string        (Virtual) Network Interface (e.g., eth0)




Source: www.kitploit.com
PingRAT - Secretly Passes C2 Traffic Through Firewalls Using ICMP Payloads PingRAT - Secretly Passes C2 Traffic Through Firewalls Using ICMP Payloads Reviewed by Zion3R on 6:39 AM Rating: 5