Skip to content
ValleyRAT_S2 Malware Targets Financial Data in Chinese-Speaking Regions

ValleyRAT_S2 Malware Targets Financial Data in Chinese-Speaking Regions

First seen 12 Jan 2026, 21:31 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

The ValleyRAT_S2 malware campaign is actively targeting organizations in Chinese-speaking areas to extract sensitive financial information. This malware functions as a remote access trojan, allowing attackers to maintain control over compromised networks for extended periods. It is part of the ValleyRAT family and is written in C++.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 212d ago How this analysis works

More articles in this cluster (2)

Following this threat?

Track ValleyRat in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed