RAT
JhoneRAT
Cisco Talos identified JhoneRAT in January 2020.
JhoneRAT is a Windows rat.
Background
JhoneRAT was first documented by Cisco Talos in January 2020. The trojan is distributed via cloud services (Google Drive) and likewise sends stolen data back through cloud platforms (Google Drive, Twitter, ImgBB, GoogleForms). The operators behind JhoneRAT focus their campaigns on Saudi Arabia, Iraq, Egypt, Libya, Algeria, Morocco, Tunisia, Oman, Yemen, Syria, UAE, Kuwait, Bahrain and Lebanon.
Source: Malpedia (Fraunhofer FKIE).