Skip to content
Fake Huorong Download Site Used to Deploy ValleyRAT Backdoor in Targeted Malware Campaign

Fake Huorong Download Site Used to Deploy ValleyRAT Backdoor in Targeted Malware Campaign

Cybersecuritynews Tushar Subhra Dutta February 24, 2026

A group of attackers has built a fake version of the Huorong Security antivirus website to trick users into downloading ValleyRAT, a Remote Access Trojan (RAT) built on the Winos4.0 framework. The campaign is linked to the Silver Fox APT group, a Chinese-speaking threat actor known for distributing trojanized versions of popular Chinese software. Huorong […]

Extracted Entities

APT Groups (1)

Attack Types (1)

Malware (2)