Red Nue, active since at least 2017, is known for its use of the multi-platform LootRAt backdoor, also known as ReverseWindow. LootRAT has variants fo...

Threat Actor Profile

Red Nue

State-sponsored threat group originating from CN.

Real-Time Alerts

Actor Overview

Origin Country
CN

Related Threat Reports

Premium
APT Campaign Analysis - Q4 2025Dec 2025
New Tactics Observed in WildDec 2025
Infrastructure Mapping ReportDec 2025
Stay Updated

Get alerts when new intel on Red Nue is published.

Actor Details

Primary Name
Red Nue
Known Aliases
LuoYu
Data Source
Precursor Intelligence
Need API Access?

Integrate threat actor data into your SIEM or SOAR.

View Plans →