Golang
Tactical RMM
Tactical RMM
Tactical RMM is an open-source remote monitoring and management (RMM) tool often misused by attackers for persistent access and lateral movement in networks.
Known Variants
Known Variants
No major variants but widely customized for different attack scenarios.
No major variants but widely customized for different attack scenarios.
Mitigation Strategies
Mitigation Strategies
Restrict RMM usage to authorized personnel, enforce strong access controls, and monitor for unusual activity on endpoints. Regularly review permissions and logs.
Targeted Industries or Sectors
Targeted Industries or Sectors
Commonly used in MSP environments and small businesses for legitimate and malicious purposes.
Commonly used in MSP environments and small businesses for legitimate and malicious purposes.
Associated Threat Actors
Associated Threat Actors
Misused by cybercriminals and APTs for lateral movement and network control.
Misused by cybercriminals and APTs for lateral movement and network control.
References
Threat Hunting Platform - Hunt.io
Products
Hunt Intelligence, Inc.
Threat Hunting Platform - Hunt.io
Products
Hunt Intelligence, Inc.
Threat Hunting Platform - Hunt.io
Products
Hunt Intelligence, Inc.