ShellCodeX
Tools • Events • News • Insights
ShellCodeX Intelligence Brief
HIGH Mobile Security

Flying Eagle Android RAT code links to 170 servers and China phishing app

Source headline: Flying Eagle Android RAT Traces Found on 170 Servers as Source Code Circulates

Threat level High
Signal strength 75/100
Source confidence 1 source
Published 3 hours ago

Intelligence Summary

Source code for the Flying Eagle Android RAT framework has been circulating on criminal Telegram channels. Investigators at Hunt.io and an independent researcher tracked matching control panels and certificates across 170 internet servers. The kit appears to be tied to a fake Chinese Public Security service application, targeting Android users. The campaign is aimed at victims in China and includes functionality related to payment-password compromise. Users in affected regions should be cautious with official-looking app installs and review mobile permissions and device integrity.

Recommended Action

Review affected assets, schedule urgent remediation, and monitor related indicators.

Topics

#telegram #mobile-malware #china #android-rat #flying-eagle
Original reporting The Hacker News Flying Eagle Android RAT Traces Found on 170 Servers as Source Code Circulates
Open original source