News › security
By Zayden R., July 6, 2026
QuimaRAT, a new Java-based remote access trojan, emerges as a threat across Linux, Windows, and macOS. Sold as malware-as-a-service, it's accessible to cybercriminals for $150 per month, posing significant risks to multi-platform environments.
In a concerning development for multi-platform users, cybersecurity researchers have identified a new Java-based remote access trojan (RAT) named QuimaRAT. Developed to operate across Linux, Windows, and macOS, this malware is marketed under a malware-as-a-service (MaaS) model. Prices start at $150 for a month and escalate to $1,200 for lifetime access, indicating a growing commercialization of cyber threats.
QuimaRAT's cross-platform capabilities are both its strength and the primary reason for alarm. Written in Java, a language known for its portability, the trojan can seamlessly infiltrate diverse operating systems without requiring significant modifications. This makes it a versatile tool for cybercriminals aiming to exploit various environments.
The emergence of QuimaRAT underscores the importance for system administrators to bolster defenses across all platforms, not just Windows. Linux, often considered more secure, is not immune to such threats. The trojan's ability to function across systems poses a unique challenge, especially for organizations with heterogeneous IT environments.
As with any emerging threat, staying informed and vigilant is crucial. Regular updates, stringent access controls, and comprehensive monitoring can help mitigate the risks posed by such sophisticated malware. While QuimaRAT's price tag might be relatively accessible, its potential impact on compromised systems could be far more costly.
The Linux Camp teaches these topics as hands-on labs on real virtual machines, verified as you type.