Skip to content

Proofpoint: TA4922 Deploys New RAT and Loader Arsenal

Gbhackers Mayura Kathir June 4, 2026

A rapidly evolving threat cluster tracked as TA4922, a Chinese-speaking cybercriminal actor deploying a diverse and expanding malware arsenal that now includes Atlas RAT, RomulusLoader, SilentRunLoader, and ValleyRAT. The group is notable for its high operational tempo, shifting tactics, and ability to blend custom malware with legitimate tools and cloud services, complicating detection efforts across […]

Extracted Entities