Skip to content
ThreatCluster

ValleyRAT Malware Targets Windows 11 with Advanced Stealth Techniques

First seen 11 Dec 2025, 18:52 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

ValleyRAT, also known as Winos or Winos4.0, has emerged as a sophisticated backdoor targeting organizations globally. This malware specifically affects Windows systems, particularly those running Windows 11 with the latest security patches, utilizing stealthy driver installations to bypass protections. The threat landscape has evolved following the public leak of the ValleyRAT builder.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 207d ago How this analysis works

More articles in this cluster (2)

Following this threat?

Track ValleyRat in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed