In recent years, the rise of malware as a service (MaaS) has garnered significant attention in the cybersecurity field. According to Dark Reading, a mobile remote access trojan (RAT) known as 'Flying Eagle' is actively operating on multiple internet servers in China, becoming a tool for various threat groups aimed at stealing victims' bank account information【1】.
The Hacker News reported that researchers traced the source code of the 'Flying Eagle' RAT circulating through criminal Telegram channels, with matching control panels and certificates found on 170 internet servers. This malicious software framework is linked to a fake 'Public Security One-Stop Service' application targeting Android users in China【2】.
The 'Flying Eagle' toolkit supports payment-password and keystroke capture, screen recording, camera access, and phishing prompts for financial, adult-content, and government-service applications. The National Cybersecurity Notification Center of China has issued warnings regarding the fraudulent application, advising users to uninstall it and take appropriate security measures. As malware continues to evolve, the cybersecurity industry faces new challenges, and businesses need to enhance their protective measures to combat increasingly complex cyber threats.

