SplatCloak
S1234 · Windows
SplatCloak is a malware that disables EDR-related routines used by Windows Defender and Kaspersky to aid in evading detection. SplatCloak has been deployed by SplatDropper and is known to be leveraged by Mustang Panda since 2025.
ATT&CK S1234
Sigma rules0
YARA rules0
Live IOCs0