Emerging Moonrise Malware Identified as Remote Access Tool

Emerging Moonrise Malware Identified as Remote Access Tool

First seen 28 Feb 2026, 14:09 UTC Reddit 30.6

Article Content

Browse articles
ThreatCluster

A new remote access Trojan (RAT) named Moonrise has been identified as a Golang binary that allows attackers to maintain a live connection to infected Windows hosts. The malware features capabilities such as keylogging, clipboard monitoring, and crypto-focused data handling, and at the time of analysis, it was undetected by all antivirus solutions. Both articles detailing the analysis were published on Reddit, with the first on February 26, 2026, and the second on February 28, 2026.

Timeline

2026-02-26
First analysis of Moonrise malware published
2026-02-28
Second analysis of Moonrise malware published