Flying Eagle Android RAT code links to 170 servers and China phishing app
Source headline: Flying Eagle Android RAT Traces Found on 170 Servers as Source Code Circulates
Intelligence Summary
Source code for the Flying Eagle Android RAT framework has been circulating on criminal Telegram channels. Investigators at Hunt.io and an independent researcher tracked matching control panels and certificates across 170 internet servers. The kit appears to be tied to a fake Chinese Public Security service application, targeting Android users. The campaign is aimed at victims in China and includes functionality related to payment-password compromise. Users in affected regions should be cautious with official-looking app installs and review mobile permissions and device integrity.
Recommended Action
Review affected assets, schedule urgent remediation, and monitor related indicators.