TI Mindmap HUB
Threat Intelligence Report

UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign

๐Ÿ“… July 18, 2026 ๐Ÿ“ฐ blog.talosintelligence.com ๐Ÿ” 0 CVE(s) referenced

A Russian-speaking threat actor, UAT-11795, is targeting U.S. and European users with trojanized installers that deploy the novel Starland RAT and bespoke WLDR C2 PowerShell implant to steal credentials and cryptocurrency, leveraging resilient C2 infrastructure and Telegram bots for persistent, multi-stage attacks.

vendor

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

๐Ÿ” Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

๐Ÿ“Š Visual Mindmap
๐ŸŽฏ IOC Extraction
โš”๏ธ MITRE ATT&CK TTPs
๐Ÿ“ฆ STIX 2.1 Bundle