# shivaya-dav/DogeRat

A multifunctional Telegram based Android RAT without port forwarding.

Repository: https://github.com/shivaya-dav/DogeRat
Canonical: https://ross.abutalabs.com/products/dogerat
License Family: other
Topics: android, android-botnet, android-exploitation, android-malware, android-pentesting, android-rat, hacking, hacking-tool, java, rat, telegram, telegram-rat, telegram-bot, android-spyware, bot, hack, kotlin-android, phishing, termux, termux-hacking
Last push: 2025-05-19T05:27:14+00:00

## Health v2 (maintenance only)
Score: 42/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 22, release rhythm 35, longevity 100
- inputs: {"age_days": 1543, "days_push": 471, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 2005, forks 1704 (observed 2026-08-28T04:06:04.670800+00:00)

## What it is
DogeRat is a Telegram-controlled Android remote access tool (RAT) consisting of a Node.js/Express/Socket.IO server and a Kotlin Android APK that gives real-time control over a target device. It advertises features such as SMS sending, camera/microphone capture, keylogging, location tracking, and file access, and is explicitly malware-oriented despite an 'educational purposes' disclaimer.

## Use cases
- control an android device remotely via a telegram bot
- build an android rat without port forwarding
- study how android spyware and c2 over telegram works
- demonstrate android pentesting techniques in a lab
- capture camera, microphone, and clipboard from a target device
- read sms and notifications from an android device

## When to choose
- you are a security researcher analyzing android RAT behavior in an isolated lab
- you need a reference implementation of telegram-based android command-and-control for defensive research

## When to avoid
- you want to monitor devices you do not own or have consent to control - this is illegal
- you need a legitimate android device management or MDM solution
- you want production-grade, legally usable pentesting tooling with proper licensing
- you require a project with a real open-source license and no paid 'undetectable' upsell

## Facets
- artifact type: application
- maturity: active
- function: security, penetration-testing, chatbot
- domain: security, penetration-testing, android-tools, messaging-platforms
- platform: jvm
- tags: android-rat, remote-access-trojan, telegram-bot, spyware, botnet, malware, device-control, keylogger, c2, android, nodejs, telegram

## Member repositories
- shivaya-dav/DogeRat (main) score 42

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:06:04.670800+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T03:01:35.113831+00:00, confidence not recorded.
  - readme: https://github.com/shivaya-dav/DogeRat (fetched 2026-08-28T04:06:04.670800+00:00, sha c8538d3ce3aa)
- Data as of 2026-08-30T08:39:29.467469+00:00.
