A laughing RAT: CrystalX combines spyware; stealer; and prankware features

Reported 01 Apr 2026 by otx · Severity: medium

In March 2026, a new MaaS active campaign was discovered promoting previously unknown malware in private Telegram chats. The Trojan features an extensive arsenal of capabilities. On the panel provided to third‑party actors, in addition to the standard features of RAT‑like malware