
| Names | PondRAT SimplexTea SimpleTea | |
| Category | Malware | |
| Type | Backdoor | |
| Description | (Palo Alto) We named this RAT family PondRAT. Further analysis revealed that PondRAT shared many characteristics with POOLRAT, another known macOS RAT in the arsenal of Gleaming Pisces. | |
| Information | <https://unit42.paloaltonetworks.com/gleaming-pisces-applejeus-poolrat-and-pondrat/> <https://www.welivesecurity.com/2023/04/20/linux-malware-strengthens-links-lazarus-3cx-supply-chain-attack/> | |
| Malpedia | <https://malpedia.caad.fkie.fraunhofer.de/details/elf.simpletea> | |
Last change to this tool card: 28 December 2024
Download this tool card in JSON format
| Changed | Name | Country | Observed | ||
APT groups | |||||
| Lazarus Group, Hidden Cobra, Labyrinth Chollima | 2007-May 2025 | ![]() | |||
1 group listed (1 APT, 0 other, 0 unknown)
|
Digital Service Security Center Follow us on |
Report incidents |
|
| +66 (0)2-123-1227 | ||
| [email protected] | ||