Netskope Threat Labs

DinodasRAT

ATP Sandbox Adv. HeuristicsAV

DinodasRAT is a multi-platform backdoor associated with the Earth Krahang threat actor, which researchers have observed breaching government organizations across dozens of countries. Its campaigns have exploited intergovernmental trust relationships to spread between agencies, and researchers documented its use in operations beyond its original regional targets.

First seen
March 2024
Last seen
October 2026
Dinodasrat
Alert Name
Gen:Variant.DinodasRAT.3
Gen:Variant.DinodasRAT.4
Generic.Linux.DinodasRAT.A.0B628E5E
Generic.Linux.DinodasRAT.A.8EBB88D6
Generic.Linux.DinodasRAT.A.92E229B4
Generic.Linux.DinodasRAT.A.A8768DD4
Linux.Backdoor.DinodasRAT
Linux.Trojan.DinodasRAT
Trojan.Linux.DinodasRAT.37833568
Trojan.Linux.DinodasRAT.A