<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>RAT on Lucas | Cyber Blog</title><link>https://blog-21b.pages.dev/en/tags/rat/</link><description>Recent content in RAT on Lucas | Cyber Blog</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>© 2026</copyright><lastBuildDate>Mon, 06 Apr 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://blog-21b.pages.dev/en/tags/rat/index.xml" rel="self" type="application/rss+xml"/><item><title>Analyse de faux outils sysadmin github : etherRat de la détéction, a la CTI</title><link>https://blog-21b.pages.dev/en/posts/github_etherrat/</link><pubDate>Mon, 06 Apr 2026 00:00:00 +0000</pubDate><guid>https://blog-21b.pages.dev/en/posts/github_etherrat/</guid><description>&lt;h2 class="relative group"&gt;Introduction
 &lt;div id="introduction" class="anchor"&gt;&lt;/div&gt;
 
 &lt;span
 class="absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none"&gt;
 &lt;a class="text-primary-300 dark:text-neutral-700 !no-underline" href="#introduction" aria-label="Anchor"&gt;#&lt;/a&gt;
 &lt;/span&gt;
 
&lt;/h2&gt;
&lt;p&gt;THIS BLOG SHOULD BE WRITE IN ENGLSIH&lt;/p&gt;

&lt;h2 class="relative group"&gt;Analyse du Code
 &lt;div id="analyse-du-code" class="anchor"&gt;&lt;/div&gt;
 
 &lt;span
 class="absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none"&gt;
 &lt;a class="text-primary-300 dark:text-neutral-700 !no-underline" href="#analyse-du-code" aria-label="Anchor"&gt;#&lt;/a&gt;
 &lt;/span&gt;
 
&lt;/h2&gt;
&lt;p&gt;Insère tes blocs de code ici :
```python&lt;/p&gt;

&lt;h1 class="relative group"&gt;Exemple de détection ou de reverse
 &lt;div id="exemple-de-détection-ou-de-reverse" class="anchor"&gt;&lt;/div&gt;
 
 &lt;span
 class="absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none"&gt;
 &lt;a class="text-primary-300 dark:text-neutral-700 !no-underline" href="#exemple-de-d%c3%a9tection-ou-de-reverse" aria-label="Anchor"&gt;#&lt;/a&gt;
 &lt;/span&gt;
 
&lt;/h1&gt;
&lt;p&gt;```&lt;/p&gt;

&lt;h2 class="relative group"&gt;Détection (SOC Perspective)
 &lt;div id="détection-soc-perspective" class="anchor"&gt;&lt;/div&gt;
 
 &lt;span
 class="absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none"&gt;
 &lt;a class="text-primary-300 dark:text-neutral-700 !no-underline" href="#d%c3%a9tection-soc-perspective" aria-label="Anchor"&gt;#&lt;/a&gt;
 &lt;/span&gt;
 
&lt;/h2&gt;
&lt;p&gt;Comment on voit ça passer dans les logs ? (Sigma, YARA&amp;hellip;)&lt;/p&gt;</description></item></channel></rss>