RatHat is AI-powered malware targeting Android devices that tricks users into downloading fake apps mimicking legitimate software like Google Chrome. It exploits accessibility permissions to gain admin-level control, stealing passwords, authentication codes, and financial app data from victims primarily in China. The malware can only be removed via factory reset and is best avoided by verifying official app sources and avoiding suspicious links.