Skip to content

Information Security News

  • Home
  • Cyber Security
  • Cybercriminals
  • Data Leak
  • Google
    • Android
  • Information Security
  • Linux
  • Malware
  • Microsoft
    • Windows
  • Open Source Tool
  • Vulnerability
  • Technology

Information Security News

  • Home
  • Cyber Security
  • Cybercriminals
  • Data Leak
  • Google
    • Android
  • Information Security
  • Linux
  • Malware
  • Microsoft
    • Windows
  • Open Source Tool
  • Vulnerability
  • Technology
  • Malware

Cybersecurity Alerted: Persian Remote World Uncovers Malicious Tools

by Nam Phong · November 24, 2023

In the shadowy realm of cybersecurity, new threats emerge with alarming frequency, preying on unsuspecting users and jeopardizing their digital assets. Cyble Research and Intelligence Labs (CRIL) recently unearthed a disturbing discovery – a website named Persian Remote World, a haven for malicious tools that empower cybercriminals to wreak havoc.

Persian Remote World operates as a virtual marketplace, offering a diverse arsenal of malicious tools, including Remote Access Trojans (RATs), loaders, and crypters. These tools are designed to infiltrate and control victim systems, enabling cybercriminals to execute commands, steal sensitive data, and manipulate system settings with impunity.

Persian RAT Post on Website | Image: Cyble Research and Intelligence Labs

At the heart of Persian Remote World’s offerings lies Persian RAT, a sophisticated remote access tool capable of inflicting significant damage. Upon execution, Persian RAT establishes a persistent presence on the victim system, granting the attacker remote control.

Persian RAT’s nefarious capabilities include keylogging, enabling the attacker to capture every keystroke made on the victim’s system, compromising passwords, financial information, and other sensitive data. Additionally, the RAT can steal cookies from popular browsers, further expanding the attacker’s access to private information.

Persian RAT’s reach extends beyond traditional data theft, targeting popular games and applications installed on the victim’s system. The RAT can scan and exfiltrate crucial files from various games, including Spotify, iTunes, Epic Games, Riot Games, and Steam.

Persian RAT’s embedded commands provide the attacker with a range of malicious functionalities. The RAT can disable User Account Control (UAC), a critical security feature that protects against unauthorized system modifications. Moreover, the RAT can initiate ransomware attacks, encrypting the victim’s files and demanding ransom payments.

Complementing Persian RAT is Persian Loader, a tool designed to execute secondary payloads on compromised systems. This allows the attacker to deploy additional malicious software, expanding their control and amplifying the potential damage.

Persian Remote World provides a builder and management tool, Persian X Loader 5.0, enabling the attacker to customize and manage Persian Loaders. The tool allows for the creation of custom listener servers, facilitating communication between the attacker and infected systems.

The malicious tools offered by Persian Remote World pose a substantial threat to individuals and organizations alike. The ability to remotely execute commands, exfiltrate sensitive data, and manipulate system settings makes these tools a powerful weapon in the hands of cybercriminals.

To mitigate the risk posed by Persian Remote World and similar threats, individuals and organizations should adopt robust cybersecurity measures. These measures include:

  • Implementing strong password policies and multi-factor authentication (MFA)
  • Regularly updating software and operating systems
  • Employing reputable antivirus and anti-malware solutions
  • Educating employees about cybersecurity threats and best practices

By adopting these measures, individuals and organizations can significantly reduce their vulnerability to malicious tools like those offered by Persian Remote World.

Related coverage

  • GenieLocker Ransomware Attacks Target Cross-Platform Systems
  • Dysphoria Botnet Employs Blockchain to Obfuscate Infrastructure
  • Cl0p Affiliates Exploit PTC Windchill for Corporate Extortion
  • Dependabot and PyPI Add Supply Chain Cooldowns
  • Meccha Chameleon Malware Spreads via Steam Workshop

Support Our Threat Intelligence

If you find our technology report and cybersecurity news helpful, consider supporting our work.

Buy Me a Coffee Logo Buy Me a Coffee PayPal
Crypto QR Code
USDT (TRC20):
TN8BdV8cp4T1Cd28gK9qTAnZknzzuwyUtm
USDT (ERC20):
0x3725e1a7d3bc5765499fa6aaafe307fabcd75bce

Tags: Persian LoadersPersian Remote WorldPersian X LoaderPersian X Loader 5.0User Account Control

Follow:

  • Next story WailingCrab Malware Evolves to Evade Detection via MQTT
  • Previous story Beware of the Imposter: Phobos Ransomware Poses as VX-Underground

  • Recent Posts
  • Popular Posts
  • Tags
  • GenieLocker ransomware attacks and encryption process overview

    Malware

    GenieLocker Ransomware Attacks Target Cross-Platform Systems

    July 31, 2026

  • Minnesota water systems cyberattack targeting municipal water and wastewater facilities

    Cyber Security

    Minnesota Water Systems Disrupted by Coordinated Cyberattack

    July 30, 2026

  • NosyNeighbor attack analyzing real-time system timing side-channels

    Vulnerability

    NosyNeighbor Attack Exposes Real-Time System Vulnerabilities

    July 30, 2026

  • Dysphoria botnet utilizing blockchain domains and proxy nodes to hide C2 servers

    Malware

    Dysphoria Botnet Employs Blockchain to Obfuscate Infrastructure

    July 30, 2026

  • SplitVPN data leak analysis confirming exposure of 58 million connection logs

    Data Leak

    SplitVPN Data Leak Validates Severe Privacy Violations

    July 30, 2026

  • VMware vCenter vulnerability CVE-2026-59309 and CVE-2026-59310 rated CVSS 9.8 authentication bypass

    Vulnerability Report

    VMware vCenter CVE-2026-59309 and CVE-2026-59310 Rated CVSS 9.8

    July 29, 2026

  • OpenSUSE Leap 15.4 Beta releases, Linux distributions

    Linux

    OpenSUSE Leap 15.4 Beta releases, Linux distributions

    May 30, 2020

  • Ubuntu 16.04.6 LTS released: fix security vulnerabilities

    Linux

    Ubuntu 16.04.6 LTS released: fix security vulnerabilities

    March 1, 2019

  • GhostBSD 23.10.1 released, FreeBSD distribution

    Linux

    GhostBSD 23.10.1 released, FreeBSD distribution

    May 1, 2020

  • Solus 4.4 Fortitude releases, Linux distribution

    Linux

    Solus 4.4 Fortitude releases, Linux distribution

    January 26, 2020

  • AI AI security Android Apple APT BOTNET CISA cloud security Critical Infrastructure cryptocurrency cyberattack cybercrime Cyber Espionage cybersecurity Cybersecurity 2026 data breach Github google hacking Infosec InfoSec 2026 Infostealer Linux Linux Kernel malware Microsoft network security open source Penetration Testing phishing privacy privilege escalation Prompt Injection ransomware RCE remote code execution security Social Engineering supply chain attack Tech News 2026 threat intelligence vulnerability windows Windows 11 zero-day
  • Home
  • About Us
  • Contact Us
  • DMCA NOTICE
  • Privacy Policy

Information Security News © 2026. All Rights Reserved.

Powered by  - Designed with Hueman Pro