![[Image: SUBBUS-RAT-V-2025.png]](https://blackhattool.com/wp-content/uploads/2025/07/SUBBUS-RAT-V-2025.png)
What is SUBBUS RAT 2025?
SUBBUS RAT (Strategic Undetected Backdoor and Botnet Utility System) is an advanced, modular remote access trojan first identified in late 2024. The 2025 version represents a complete rewrite with AI-assisted evasion, cloud-based C2 infrastructure, and unprecedented stealth capabilities.
Technical Features & Capabilities1. Core Remote Access Functions
- Live system interaction
- Real-time screen streaming
- File system management
- Remote shell access
- Process injection
- AI-powered keylogger
- Ambient audio capture
- Multi-camera access
- Document scanning
- Network traffic interception
- Zero-click exploits (For Exchange, iMessage, WhatsApp)
- Lateral movement toolkit (Mimikatz, BloodHound integration)
- Privilege escalation modules (20+ kernel exploits)
- Cloud service compromise (AWS, Azure, GCP credentials theft)
- UEFI-level persistence
- AI-generated mutexes
- Time-delayed activation
- Sandbox detection
- GPS spoofing
- Quantum-resistant encryption
- Self-healing mechanisms
- Victim Profiling AI
- Decentralized C2
- Ransomware integration