FlawedGrace is a fully featured remote access tool (RAT) written in C++ that was first observed in late 2017.[1]
Domain | ID | Name | Use | |
---|---|---|---|---|
Enterprise | T1027 | .013 | Obfuscated Files or Information: Encrypted/Encoded File |
FlawedGrace encrypts its C2 configuration files with AES in CBC mode.[1] |