Lab-RATS (Remote Access Tool for Security) is developed by K4N3CO.LABS as a high-fidelity platform for mobile security auditing, forensic analysis, and authorized penetration testing. Our mission is to provide security professionals and researchers with a modern toolset to understand mobile vulnerabilities and validate defense-in-depth strategies (such as Samsung Knox and Play Protect) in a controlled, legal environment.
The Most fundamental principle of this project is Consensual Authorization:
• NEVER deploy Lab-RATS on ANY device that you do not personally own or have explicit, written legal permission from the owner to test.
• NEVER use this tool for unauthorized surveillance, stalking, or harassment.
• NEVER use this tool for financial gain through data theft or extortion.
Users found to be using Lab-RATS for ANY of the following activities will be banned from the project’s communication channels, and their issues/pull requests will be closed:
• Deployment of the APK as part of a botnet or large-scale malware campaign.
• Distribution of the tool on forums dedicated to cybercrime or "black hat" activities.
• Modifying the code to remove built-in safety disclaimers or recovery methods (like the dial-pad restoration).
Due to the powerful nature of Remote Access Tools (RATs), Lab-RATS includes features—such as keylogging, camera access, and stealth masquerading—that are inherently flagged by Antivirus (AV), EDR, and Play Protect systems:
• False Positives: We acknowledge that security engines will flag this tool as "Dangerous." This is expected behavior for security research software.
• Responsible Disclosure: If you discover a vulnerability within Lab-RATS itself that could lead to unauthorized access to the C2 panel, please report it privately to the maintainers rather than opening a public issue.
By building or installing Lab-RATS, you agree that you are solely responsible for compliance with your local, state, and national laws. The developers assume NO liability for ANY misuse, damage to hardware, or legal consequences resulting from your use of this software.
• Respect Privacy: When discussing research findings, always redact sensitive information (IPs, phone numbers, or private data).
• Push the Limits, Respect the Laws: We encourage aggressive testing of mobile security boundaries, provided it remains within the scope of ethical hacking.
Project maintainers have the right and responsibility to remove, edit, or reject comments, commits, code, and other contributions that do not align with this Code of Conduct.
© 2026 K4N3CO // "The one's that MIND don't matter... The one's that MATTER don't mind..." // Push the Limits