APT36 and SideCopy Launch Cross-Platform RAT Campaigns Against Indian Entities
Numerous attacks aimed at infiltrating Windows and Linux environments with remote access trojans that can steal confidential information and guarantee ongoing access to compromised devices have targeted the Indian defense industry and government-affiliated institutions.
Malware families like Geta RAT, Ares RAT, and DeskRAT are used in the campaigns; these are frequently linked to threat clusters associated with Pakistan, such as SideCopy and APT36 (also known as Transparent Tribe). SideCopy, which has been in operation since at least 2019, is evaluated as functioning as a Transparent Tribe subsidiary.
When combined, these initiatives support a well-known but changing story, according to Aditya K. Sood, Aryaka's vice president of Security Engineering and AI Strategy. SideCopy and Tra...

